Home Malware Programs Trojans TrojanDownloader:Win32/Recslurp.B

TrojanDownloader:Win32/Recslurp.B

Posted: April 20, 2015

Threat Metric

Ranking: 19,752
Threat Level: 8/10
Infected PCs: 4,581
First Seen: April 20, 2015
Last Seen: February 1, 2025
OS(es) Affected: Windows

TrojanDownloader:Win32/Recslurp.B is a vicious Trojan that can have detrimental results on the affected machines. It may sneak in if the user performs some suspicious actions such as opening a harmful e-mail attachment or downloading software from risky sources. After the successful installation, TrojanDownloader:Win32/Recslurp.B modifies a lot of the system settings and starts itself automatically. Nevertheless, initially there may not be too many vivid symptoms. This can change at any time as the primary function of this malware is to contribute for the download of additional threats. This happens with the use of remote hosts such as plus.smtp.mail.yahoo.com and smtp.gmail.com. If this connection is successful, TrojanDownloader:Win32/Recslurp.B links the PC with Command and Control (C & C) servers. This would allow the cyber criminals behind this malware to load threats of their choice and to steal personal files. To avoid this, delete TrojanDownloader:Win32/Recslurp.B with the help of dedicated anti-malware program as soon as possible.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\rundll32.exe File name: rundll32.exe
Size: 43.55 KB (43552 bytes)
MD5: 861a047f185fa5bc19ec28e9322a3d84
Detection count: 698
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: June 18, 2016
%APPDATA%\system32\csrss.exe File name: csrss.exe
Size: 92.39 KB (92399 bytes)
MD5: 6ea5e28a34daf38cb0a5762de05bed12
Detection count: 143
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\system32
Group: Malware file
Last Updated: June 18, 2016

More files

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%APPDATA%\rundll3.exe
Loading...