Home Malware Programs Trojans Trojan.Trensil

Trojan.Trensil

Posted: April 4, 2014

Threat Metric

Threat Level: 9/10
Infected PCs: 77
First Seen: April 4, 2014
Last Seen: October 11, 2024
OS(es) Affected: Windows



Trojan.Trensil is a Trojan that may open a back door and steal information on the infected computer system. Trojan.Trensil is typically downloaded by a specially crafted PDF document which exploits a vulnerability on the targeted computer. When executed, Trojan.Trensil creates the potentially malicious files. Trojan.Trensil then creates the registry subkey. Trojan.Trensil creates a service with the name 'WmdmPMM'. Trojan.Trensil may connect to the remote locations. Trojan.Trensil may execute the potentially malicious actions such as receive commands from the remote location of the attacker and transmit information to remote locations.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%UserProfile%\Templates\1A0E621SV.CAB File name: %UserProfile%\Templates\1A0E621SV.CAB
Mime Type: unknown/CAB
Group: Malware file
%Temp%\000ELISEA310.TMP File name: %Temp%\000ELISEA310.TMP
File type: Temporary File
Mime Type: unknown/TMP
Group: Malware file
%UserProfile%\Templates\wincex.dllbk File name: %UserProfile%\Templates\wincex.dllbk
Mime Type: unknown/dllbk
Group: Malware file
%UserProfile%\Templates\wincex.dll File name: %UserProfile%\Templates\wincex.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{Subkeys}HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WmdmPMM
Loading...