Home Malware Programs Trojans PWSteal.Jomloon.E

PWSteal.Jomloon.E

Posted: January 26, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 28
First Seen: January 26, 2012
OS(es) Affected: Windows

PWSteal.Jomloon.E is a password-stealing Trojan that is able to record your personal information and allows your PC system to get infected with extra malware threats, which could be even more damaging to your personal security and functionality of the Windows system. PWSteal.Jomloon.E targets Windows users. PWSteal.Jomloon.E aims at active users of an online game named 'Dungeon Fighter (DNF)', who are controlled by cybercriminals. Once PWSteal.Jomloon.E enters the targeted computer and hooks to the game account,schemers can use this information for their own aims. PWSteal.Jomloon.E uses original names of the legitimate files to name malicious files. The disguised executable files can add and delete processes in the Windows Registry, or even connect your PC and accounts to remote servers. Therefore, your email and Chat room accounts can be used to distribute malicious PWSteal.Jomloon.E's files without your knowledge.

Aliases

RiskTool/Win32.BitCoinMiner.gen [Antiy-AVL]Artemis!4F03D40C5040 [McAfee-GW-Edition]Bitcoin Miner [Sophos]Win32:BitCoinMiner-G [PUP] [Avast]a variant of Win32/BitCoinMiner [NOD32]Generic.grp!fq [McAfee]PWS:Win32/Jomloon.E [Microsoft]Mal/Behav-160 [Sophos]Heuristic.Crypted [McAfee-GW-Edition]HEUR/Crypted [AntiVir]Suspicious File [eSafe](Suspicious) - DNAScan [CAT-QuickHeal]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\Google Chrome\bin\chrome.exe File name: chrome.exe
Size: 1.04 MB (1046528 bytes)
MD5: 4f03d40c5040e61a506a88f2efe10a13
Detection count: 53
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Google Chrome\bin
Group: Malware file
Last Updated: January 27, 2012
%APPDATA%\b.exe File name: b.exe
Size: 34.3 KB (34304 bytes)
MD5: 41d0adb3035d3dfc420f931e67cf0409
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: January 26, 2012
Loading...