Home Malware Programs Trojans Win32/Kheagol.Patch.B

Win32/Kheagol.Patch.B

Posted: February 27, 2012

Threat Metric

Threat Level: 2/10
Infected PCs: 84
First Seen: February 28, 2012
OS(es) Affected: Windows

Win32/Kheagol.Patch.B is a dangerous password stealing dropper Trojan. Win32/Kheagol.Patch.B targets logon information, especially associated with financial accounts used online. Win32/Kheagol.Patch.B is downloaded by another Trojan that comes from the same malware family. Win32/Kheagol.Patch.B could be modified in its payload to run other malware threats. Win32/Kheagol.Patch.B is executed upon visiting certain website. Changing data to be loaded by Win32/Kheagol.Patch.B from that website attackers are free to represent new content. Anyway, Win32/Kheagol.Patch.B keeps addressing the website as instructed at given intervals updating the password stealing parasites. Win32/Kheagol.Patch.B is able to set up an independent connection channel to a remote server when sending gathered information. Gatehred data based on spying dispatching is doubled through Win32/Kheagol.Patch.B's channel. Remove Win32/Kheagol.Patch.B as early as possible.

Technical Details

Additional Information

The following URL's were detected:
vidspcon.com
Loading...