Home Malware Programs Trojans Trojan:Win32/Tobfy!mp3

Trojan:Win32/Tobfy!mp3

Posted: January 3, 2013

Threat Metric

Threat Level: 9/10
Infected PCs: 19
First Seen: January 3, 2013
OS(es) Affected: Windows

Trojan:Win32/Tobfy!mp3 is a ransomware Trojan that propagates via a malicious audio file (MP3) containing a bogus FBI warning message that states your computer is blocked for violation of federal laws. Trojan:Win32/Tobfy!mp3 pretends to come from a legal security institution and covers all other windows on your PC making it unusable. Trojan:Win32/Tobfy!mp3 locks the targeted PC and demands a ransom from victims to be paid via Ukash, Paysafecard, Green Dot MoneyPak and Ultimate Game Card to restore access to the machine. Trojan:Win32/Tobfy!mp3 displays a fake pop-up audio message repeatedly, which cannot be stopped by affected PC users. If your computer has been contaminated with a particular malicious file, this indicates that your PC has been also corrupted by other ransomware infections. These components may prevent access to your computer by covering your desktop with a page that also demands payment of the fine.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



virus.zip File name: virus.zip
Size: 275.6 KB (275606 bytes)
MD5: a3147aba37ee03ffc1a56924906d2681
Detection count: 78
Mime Type: unknown/zip
Group: Malware file
Last Updated: January 7, 2013
sound.mp3 File name: sound.mp3
Size: 18.25 KB (18252 bytes)
MD5: 819be88d910d97bb06e02bc255977999
Detection count: 43
Mime Type: unknown/mp3
Group: Malware file
Last Updated: January 7, 2013

Additional Information

The following messages's were detected:
# Message
1'FBI warning. Your computer is blocked for violation of federal law.'

Loading...