Home Malware Programs Trojans Trojan.Remcos

Trojan.Remcos

Posted: June 23, 2017

Threat Metric

Ranking: 7,032
Threat Level: 8/10
Infected PCs: 6,677
First Seen: June 23, 2017
Last Seen: March 8, 2025
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Foreshadower5.exe File name: Foreshadower5.exe
Size: 249.85 KB (249856 bytes)
MD5: 553435d0103b3638a5760e1b587c5a1e
Detection count: 155
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Foreshadower5.exe
Group: Malware file
Last Updated: June 26, 2020
C:\Users\<username>\Desktop\file.exe File name: file.exe
Size: 1.22 MB (1224771 bytes)
MD5: 569a2e99a6abca834035045412452817
Detection count: 41
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Desktop
Group: Malware file
Last Updated: June 21, 2018
%SYSTEMDRIVE%\Users\<username>\Desktop\05edb198ecba3a2e04c92739cd4b15776f906f5d55a6cd65761d8eb66d2722a2(1) File name: 05edb198ecba3a2e04c92739cd4b15776f906f5d55a6cd65761d8eb66d2722a2(1)
Size: 98.3 KB (98304 bytes)
MD5: 41c92abbc56f83f6901ca56f348be20a
Detection count: 21
Path: %SYSTEMDRIVE%\Users\<username>\Desktop\05edb198ecba3a2e04c92739cd4b15776f906f5d55a6cd65761d8eb66d2722a2(1)
Group: Malware file
Last Updated: March 6, 2024
%SYSTEMDRIVE%\Users\<username>\Desktop\708206251ace22a8ab6cc4cb2b03b1bfb2276fea47fe1035f66f9f7c0ad513f1(1) File name: 708206251ace22a8ab6cc4cb2b03b1bfb2276fea47fe1035f66f9f7c0ad513f1(1)
Size: 77.82 KB (77824 bytes)
MD5: 75e4737114f16986842f788155375260
Detection count: 21
Path: %SYSTEMDRIVE%\Users\<username>\Desktop\708206251ace22a8ab6cc4cb2b03b1bfb2276fea47fe1035f66f9f7c0ad513f1(1)
Group: Malware file
Last Updated: March 6, 2024
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Afprikkes.exe File name: Afprikkes.exe
Size: 241.66 KB (241664 bytes)
MD5: d6461468aeb7d8f48b99e69cf031a7de
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Afprikkes.exe
Group: Malware file
Last Updated: June 26, 2020

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%APPDATA%\Msos\msos.exe

Additional Information

The following directories were created:
%appdata%\install

Related Posts

Loading...