Trojan-Downloader.Win32.FraudLoad.gam

Posted: December 2, 2009
Threat Metric
Threat Level: 9/10
Infected PCs 4,377

Trojan-Downloader.Win32.FraudLoad.gam Description

Trojan-Downloader.Win32.FraudLoad.gam is installed through a devious exploit and deceives the user by downloading other harmful malware onto the infected computer. Trojan-Downloader.Win32.FraudLoad.gam can download adware, spyware and other malware from various servers and sources on the Internet. Other symptoms include opening illicit network connections, self-mutation and the ability to disable weak software security. Risks which may prove detrimental to the computer user include the transmission of personal information without the user's consent. Trojan-Downloader.Win32.FraudLoad.gam can severely degrade the performance of your computer and poses a severe security risk. Terminate Trojan-Downloader.Win32.FraudLoad.gam upon detection.

Aliases


Hoax/Win32.Agent.gen [Antiy-AVL]Hoax.Win32.Agent!IKTR/Agent.amy.1 [AntiVir]Trojan.Agent!2tjGWIItMMoHoax.Win32.Agent.amy [Kaspersky]TROJ_SPNR.08DB12W32/Obfuscated.DM!genrArtemis!7B948792C642 [McAfee]Win32:Adware-gen [Adw]WinFixer.IV [AVG]not-a-virus [Ikarus]Riskware.BestSeller.aFraudTool/Win32.BestSeller.gen [Antiy-AVL]FraudTool.BestSeller.kAPPL/WinFixer.46592 [AntiVir]
More aliases (5501)

Use SpyHunter to Detect and Remove PC Threats

If you are concerned that malware or PC threats similar to Trojan-Downloader.Win32.FraudLoad.gam may have infected your computer, we recommend you start an in-depth system scan with SpyHunter. SpyHunter is an advanced malware protection and remediation application that offers subscribers a comprehensive method for protecting PCs from malware, in addition to providing one-on-one technical support service.

Download SpyHunter's Malware Scanner

Note: SpyHunter's free version is only for malware detection. If SpyHunter detects malware on your PC, you will need to purchase SpyHunter's malware tool to remove the malware threats. Learn more on SpyHunter. If you would like to uninstall SpyHunter for any reason, please follow these uninstall instructions. To learn more about our policies and practices, visit our EULA, Privacy Policy and Threat Assessment Criteria.

Why can't I open any program including SpyHunter? You may have a malware file running in memory that kills any programs that you try to launch on your PC. Tip: Download SpyHunter from a clean computer, copy it to a USB thumb drive, DVD or CD, then install it on the infected PC and run SpyHunter's malware scanner.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\8FE7EAC9DBF7DFD14D16A6C7CC7E4D34\gotnewupdate.exe File name: gotnewupdate.exe
Size: 745.47 KB (745472 bytes)
MD5: 09add4d89b20e1266c00d2e764ff9644
Detection count: 482
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\8FE7EAC9DBF7DFD14D16A6C7CC7E4D34\
Group: Malware file
Last Updated: May 4, 2010
hqnqbsfi.exe File name: hqnqbsfi.exe
Size: 94.2 KB (94208 bytes)
MD5: 61d1057e35c4aefe7f957f0843bccf6b
Detection count: 76
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 4, 2010
%TEMP%Hk1.exe File name: Hk1.exe
Size: 145.4 KB (145408 bytes)
MD5: 03cd94952410f824f7329050cf9ad29e
Detection count: 65
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
xxx8227.exe File name: xxx8227.exe
Size: 89.6 KB (89604 bytes)
MD5: 4c0da52093b68ad1effe8199587b42c9
Detection count: 62
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 23, 2010
win32extension.dll File name: win32extension.dll
Size: 372.73 KB (372736 bytes)
MD5: a0b7593f2aaba86ac2b9e0777be9c57f
Detection count: 60
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: March 23, 2010
~TM27.tmp File name: ~TM27.tmp
Size: 15.36 KB (15360 bytes)
MD5: a38b8943577e4ef1e963d154e3bd3b1a
Detection count: 56
File type: Temporary File
Mime Type: unknown/tmp
Group: Malware file
Last Updated: January 24, 2010
m4q67t.dll File name: m4q67t.dll
Size: 15 KB (15000 bytes)
MD5: d4aa47042cf12315b6f37dd1bd455708
Detection count: 46
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: February 18, 2010
xxx7591.exe File name: xxx7591.exe
Size: 61.44 KB (61444 bytes)
MD5: 8ee3e27d767d66dc2097f32e9431b10e
Detection count: 46
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 8, 2010
helpers32.dll File name: helpers32.dll
Size: 27.64 KB (27648 bytes)
MD5: a0b5ab35d0f89bd0007a00585da0447f
Detection count: 36
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: April 15, 2010
wayebomi.exe File name: wayebomi.exe
Size: 51.72 KB (51720 bytes)
MD5: 20690f9ccb0e0e2d780561ab1143c090
Detection count: 31
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: April 15, 2010
DefenderInstall[1].exe File name: DefenderInstall[1].exe
Size: 3.57 MB (3576062 bytes)
MD5: d2d40aa4a8fc6dfda7a85d243eed4a2b
Detection count: 24
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 29, 2010
%APPDATA%\drivers\winupgro.exe File name: winupgro.exe
Size: 1.06 MB (1061376 bytes)
MD5: d84367293f7e7c61eea347b767f91a38
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\drivers\
Group: Malware file
Last Updated: November 30, 2010
%USERPROFILE%\Desktop\setup_de.exe File name: setup_de.exe
Size: 262.16 KB (262160 bytes)
MD5: dba6689c1423c4387449c2ac6686c8e4
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Desktop\
Group: Malware file
Last Updated: October 3, 2011
zhcdkpso.exe File name: zhcdkpso.exe
Size: 225.28 KB (225280 bytes)
MD5: 2a2a38caa0afc3c127e05b07cf75cf94
Detection count: 15
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 18, 2010
dgrpsetu32.dll File name: dgrpsetu32.dll
Size: 120.32 KB (120320 bytes)
MD5: 50dec1ee3040fb8118fae67e2af56ab7
Detection count: 15
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: April 8, 2010
ccdrive32.exe File name: ccdrive32.exe
Size: 178.69 KB (178695 bytes)
MD5: 503c9d571f7f207ee1f0bb34e6f3077b
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 18, 2010
%APPDATA%winantiviruspro2006freeinstall_nl[1].exe File name: winantiviruspro2006freeinstall_nl[1].exe
Size: 92.88 KB (92880 bytes)
MD5: b56edb2b32396c4e44222f12fc630d83
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: November 1, 2011
waxqsftav.exe File name: waxqsftav.exe
Size: 279.29 KB (279296 bytes)
MD5: c022d01e98095759696a35aa2269f37f
Detection count: 6
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 18, 2010
%APPDATA%newsoftwareinstaller[1].exe File name: newsoftwareinstaller[1].exe
Size: 144.15 KB (144152 bytes)
MD5: 6b45cbb5ff302933b36aaadfe2fbff42
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: September 21, 2011

More files

Registry Modifications


The following newly produced Registry Values are:

File name without pathmsa.exesmss32.exeCLSID{376892AE-1825-4E5F-9F85-23F9640051CC}{94204837-0871-4E6A-A426-7F75B1B731F0}Registry keySoftware\Microsoft\Internet Explorer\Toolbar\{12A25CE9-0A93-4074-9516-A5B1A83141C9}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{FCCD9F7B-5BF3-4DC4-B131-CE069F8A62AB}SOFTWARE\Microsoft\Internet Explorer\Toolbar\{FF20AF38-AD56-4361-AE03-339130767E26}

Additional Information

The following URL's were detected:
cubeexe.comsecurityonlinecomputer.net
Home Malware Programs Rootkits Trojan-Downloader.Win32.FraudLoad.gam

One Comment

Leave a Reply

Please note that we are not able to assist with billing and support issues regarding SpyHunter or other products. If you're having issues with SpyHunter, please get in touch with SpyHunter customer support through your SpyHunter. If you have SpyHunter billing questions, we recommend you check the Billing FAQ. For general suggestions or feedback, contact us.