Trojan.Waprox.A

Posted: July 20, 2012
Threat Metric
Threat Level: 8/10
Infected PCs 143

Trojan.Waprox.A Description

Trojan.Waprox.A has close associations with backdoor Trojans from its same family (Waprox) and a high chance of complicity in spyware-based attacks that steal private information. While Trojan.Waprox.A can be a severe problem for your computer's safety and confidentiality, SpywareRemove.com malware research team has been unable to discern any distinct symptoms of a Trojan.Waprox.A infection, and, under normal circumstances, recommend that you use anti-malware software to find and delete Trojan.Waprox.A. These scans should be sufficiently thorough to find other PC threats that may also be on your computer, since there is a high probability of other Waprox-based Trojans or additional PC threats being installed along with Trojan.Waprox.A.

Trojan.Waprox.A: Doing Its Job By Keeping You Unaware

First appearing on the malware scene in early 2012, Trojan.Waprox.A is detected by many different anti-malware products, primarily by heuristic methods that label Trojan.Waprox.A as a generic threat. Aliases for Trojan.Waprox.A include Mal/Cleaman-B, Trojan.Zbot, Artemis!188C6CB80CA6, Gen:Variant.Kazy.66694, Monitor/Win32.PowerSpy.gen, PWS-Zbot.gen.xd, TR/Vundo.Gen and Trojan/Blojab.a. Trojan.Waprox.A remains as stealth-oriented as most types of PC threats that include spyware or downloader functions; SpywareRemove.com malware experts warn that alerts from anti-malware products may be the only warning about Trojan.Waprox.A that you get during its assault.

SpywareRemove.com malware analysts haven't finished analyzing Trojan.Waprox.A's full payload, but likely attacks by Trojan.Waprox.A and closely-related Trojans include:

  • The installation of additional PC threats without your consent. Commonly-installed PC threats include browser hijackers that alter your web browser's settings, banking Trojans that steal confidential bank information and rootkits that compromise components of your operating system.
  • Spyware-related attacks, such as recording your keyboard typing, monitoring web data transactions or capturing screenshots.
  • The presence of backdoor exploits that allow criminals to control your PC from a Command & Control Server for illegal purposes.

Bustling Out Trojan.Waprox.A Along with All of Its Unwanted Family

Trojan.Waprox.A has an extremely high chance of being associated with other PC threats that are also installed on your computer, such as Trojan.Waprox. Other members of the Waprox family may be installed as either malicious .exe files or .dll files, and detection for Trojan.Waprox.A and its relatives should always be handled by anti-malware programs whenever possible. SpywareRemove.com malware analysts have found that common behavior for Trojan DLL files often includes injection into unrelated files and memory processes, and attempting to delete these infected files may harm your OS.

Like most Trojans, Trojan.Waprox.A hasn't shown any signs of having cross-platform-compatibility features, and only Windows PCs are in danger from Trojan.Waprox.A attacks. However, most versions of Windows can be affected by Trojan.Waprox.A and other Waprox Trojans, including Windows 7. Patching your OS, browser and anti-malware scanners can provide additional security by closing security vulnerabilities that could be used to install Trojan.Waprox.A without your permission.

Aliases


Generic28.KVG [AVG]W32/Blojab.A!tr [Fortinet]Virus.Win32.Vundo [Ikarus]HeurEngine.MaliciousPackerTrojan.Blojab.aTrojanSpy.Zbot.auysVirus.Win32.Vundo!IKWin32:Crypt-MOJ [Trj] [Avast]TROJ_INJECT.LMTW32/Smalltroj.AAHCBTrojan [K7AntiVirus]PWS-Zbot.gen.xs [McAfee]Trojan.Generic.KDV.611050Gen:Trojan.Heur.LP.bq4@aSYvDeb [BitDefender]Artemis!E61615C1C5E1 [McAfee]
More aliases (110)

Use SpyHunter to Detect and Remove PC Threats

If you are concerned that malware or PC threats similar to Trojan.Waprox.A may have infected your computer, we recommend you start an in-depth system scan with SpyHunter. SpyHunter is an advanced malware protection and remediation application that offers subscribers a comprehensive method for protecting PCs from malware, in addition to providing one-on-one technical support service.

Download SpyHunter's Malware Scanner

Note: SpyHunter's free version is only for malware detection. If SpyHunter detects malware on your PC, you will need to purchase SpyHunter's malware tool to remove the malware threats. Learn more on SpyHunter. If you would like to uninstall SpyHunter for any reason, please follow these uninstall instructions. To learn more about our policies and practices, visit our EULA, Privacy Policy and Threat Assessment Criteria.

Why can't I open any program including SpyHunter? You may have a malware file running in memory that kills any programs that you try to launch on your PC. Tip: Download SpyHunter from a clean computer, copy it to a USB thumb drive, DVD or CD, then install it on the infected PC and run SpyHunter's malware scanner.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%COMMONPROGRAMFILES(x86)%\GEFeatureBalloonCoClass\GEFeatureBalloonCoClass.dll File name: GEFeatureBalloonCoClass.dll
Size: 26.11 KB (26112 bytes)
MD5: e61615c1c5e13e10d42c5de70efc2b32
Detection count: 60
File type: Dynamic link library
Mime Type: unknown/dll
Path: %COMMONPROGRAMFILES(x86)%\GEFeatureBalloonCoClass\
Group: Malware file
Last Updated: August 16, 2012
%COMMONPROGRAMFILES%\Upload\Upload.dll File name: Upload.dll
Size: 26.11 KB (26112 bytes)
MD5: 188c6cb80ca6dd3ef4e98bb5b4ffa0e1
Detection count: 30
File type: Dynamic link library
Mime Type: unknown/dll
Path: %COMMONPROGRAMFILES%\Upload\
Group: Malware file
Last Updated: August 2, 2012
%COMMONPROGRAMFILES%\TX\TXGeneral.dll File name: TXGeneral.dll
Size: 63.07 KB (63072 bytes)
MD5: eeafc0d2fda66fd2c65a514ca6e2a7af
Detection count: 23
File type: Dynamic link library
Mime Type: unknown/dll
Path: %COMMONPROGRAMFILES%\TX\
Group: Malware file
Last Updated: July 20, 2012
%PROGRAMFILES(x86)%\R\service.exe File name: service.exe
Size: 315.39 KB (315392 bytes)
MD5: 097dafa0c4b5a5efe4c3a45862435ae3
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\R\
Group: Malware file
Last Updated: July 23, 2012
%COMMONPROGRAMFILES%\SHA\SHAEndpoint.dll File name: SHAEndpoint.dll
Size: 49.24 KB (49248 bytes)
MD5: 82af2988247818af57874a9d9b5611e8
Detection count: 6
File type: Dynamic link library
Mime Type: unknown/dll
Path: %COMMONPROGRAMFILES%\SHA\
Group: Malware file
Last Updated: July 23, 2012
%COMMONPROGRAMFILES%\EDID\EDID.dll File name: EDID.dll
Size: 62.56 KB (62560 bytes)
MD5: 592a4a2be61702207739861c495c58ff
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %COMMONPROGRAMFILES%\EDID\
Group: Malware file
Last Updated: July 20, 2012
%COMMONPROGRAMFILES%\PSFactoryBuffer\PSFactoryBuffer.dll File name: PSFactoryBuffer.dll
Size: 75.87 KB (75872 bytes)
MD5: ea0f04f4d1f298e016846be69ce5a4db
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %COMMONPROGRAMFILES%\PSFactoryBuffer\
Group: Malware file
Last Updated: November 6, 2012
Home Malware Programs Trojans Trojan.Waprox.A

Leave a Reply

Please note that we are not able to assist with billing and support issues regarding SpyHunter or other products. If you're having issues with SpyHunter, please get in touch with SpyHunter customer support through your SpyHunter. If you have SpyHunter billing questions, we recommend you check the Billing FAQ. For general suggestions or feedback, contact us.