Home Malware Programs Trojans Puper

Puper

Posted: August 31, 2006

Threat Metric

Ranking: 19,025
Threat Level: 9/10
Infected PCs: 96
First Seen: July 24, 2009
Last Seen: February 1, 2025
OS(es) Affected: Windows

Puper is a malicious Trojan application related to Zlob, SysSecuritySite, and RBot. This program embeds itself into your system registry as a Browser Helper Object and then proceeds to hijack your browser home and search pages. This program may also pop up fake "warning" messages as popup browser windows, as well as from the task bar. This Trojan promotes fake anti-spyware products, such as SpyHeal, SpywareStrike, SpyGuard, PestWiper, SpyAxe, Malware Wipe, and Adware Punisher. It is also known as Clicker, AdClicker, and ZapChast.

Aliases

TROJ_FAKEAV.ZT [TrendMicro]Trojan Horse [Symantec]InternetSecurityDeluxe [Sunbelt]Troj/FakeAv-AG [Sophos]High Risk Worm [Prevx1]Generic Trojan [Panda]probably a variant of Win32/TrojanDownloader.Agent [NOD32]Program:Win32/Isdeluxe [Microsoft]Generic FakeAlert.a [McAfee]Trojan.Win32.Malware.1 [K7AntiVirus]FakeAv.AG!tr [Fortinet]Win32/FakeAlert.FJ [eTrust-Vet]Trojan.FakeAlert.UR [BitDefender]Puper.FW [AVG]Win32:Trojan-gen {Other} [Avast]
More aliases (17)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



intmonp.exe File name: intmonp.exe
Size: 2.56 KB (2560 bytes)
MD5: 729c342ab81f168dc5ae9f0324491765
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
malware.exe File name: malware.exe
Size: 98.81 KB (98816 bytes)
MD5: b7aeb0336716be6ec1863134086652fa
Detection count: 55
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
popuper.exe File name: popuper.exe
Size: 15.35 KB (15352 bytes)
MD5: 499d83d2f263c171e3118786b6b90951
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
jetctrl.dll File name: jetctrl.dll
Size: 196.6 KB (196608 bytes)
MD5: 7ed5e875f9ae08e7249645715d285f7c
Detection count: 0
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{1E1B286C-88FF-11D2-8D96-D7ACAC95951F}{1E1B2878-88FF-11D2-8D96-D7ACAC95951F}

Related Posts

Loading...