Home Malware Programs Trojans Trojan.FraudPack.Gen

Trojan.FraudPack.Gen

Posted: August 24, 2011

Trojan.Win32.FraudPack.gen is a Trojan infection that infects computers via security holes and downloads other malware threats onto the affected PC system. Trojan.Win32.FraudPack.gen allows remote hackers obtain access to the compromised machine. Trojan.Win32.FraudPack.gen spreads via unwanted spam emails, pornographic related websites, file-sharing applications and malicious media files. Once inside a corrupted PC, Trojan.Win32.FraudPack.gen installs malicious system files and downloads various harmful applications and displays annoying pop-up ads. Trojan.Win32.FraudPack.gen is a critical security threat that should be uninstalled immediately after detection to protect your PC.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%DesktopDir%\Uncensored porn.URL File name: %DesktopDir%\Uncensored porn.URL
Mime Type: unknown/URL
%DesktopDir%\CP illegal content.URL File name: %DesktopDir%\CP illegal content.URL
Mime Type: unknown/URL
%DesktopDir%\BDSM galleries.URL File name: %DesktopDir%\BDSM galleries.URL
Mime Type: unknown/URL
%Temp%\svchost.exe File name: %Temp%\svchost.exe
File type: Executable File
Mime Type: unknown/exe
%System%\winupdate.exe File name: %System%\winupdate.exe
File type: Executable File
Mime Type: unknown/exe
%ProgramFiles%\prodm\prodm.dll File name: %ProgramFiles%\prodm\prodm.dll
File type: Dynamic link library
Mime Type: unknown/dll
%ProgramFiles%\microsoft common\wuauclt.exe File name: %ProgramFiles%\microsoft common\wuauclt.exe
File type: Executable File
Mime Type: unknown/exe
%System%\wscmp.dll.tmp File name: %System%\wscmp.dll.tmp
File type: Temporary File
Mime Type: unknown/tmp
%System%\update32.exe.tmp File name: %System%\update32.exe.tmp
File type: Temporary File
Mime Type: unknown/tmp
%System%\sex3.ico.tmp File name: %System%\sex3.ico.tmp
File type: Temporary File
Mime Type: unknown/tmp
%System%\sex2.ico.tmp File name: %System%\sex2.ico.tmp
File type: Temporary File
Mime Type: unknown/tmp
%System%\sex1.ico.tmp File name: %System%\sex1.ico.tmp
File type: Temporary File
Mime Type: unknown/tmp

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Controls Folder\wmurl = "http://iednserror.info/security/index.php?id=880240"HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\run = "%System%\winupdate.exe"
Loading...