Home / Spyware Encyclopedia / Trojan.Downloader << Back

Recommendation to Automatically remove Trojan.Downloader


Our products can remove Trojan.Downloader and thousands of other Virus and Spyware automatically and instantly.

Trojan.Downloader Details


  • Category Trojan
  • Discovered 12/1/2012 2:27:56 AM
  • Modified 7/25/2023 10:33:58 AM
  • Threat Level Critical
  • Category Description
    A destructive program that masquerades as a benign application. Unlike viruses, Trojan horses do not replicate themselves but they can be just as destructive. One of the most insidious types of Trojan horse is a program that claims to rid your computer of viruses but instead introduces viruses onto your computer.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
SonndMan.exe 4236011.0.0.03cd8436fb249a31197b9ca093876a39d 
SonndMan.exe 4305211.0.0.02736fe2d5fe4d3e6296cb8401bea71b8 
loaderadv446_2.exe 8704 2.4.4.259921cac783188e412e6d8826d158f47 
loaderadv427_2.exe 9216 2.4.4.14617302e8efa1b6104801c734211de12 
loaderadv668_2.exe 9216 1.0.2.36d42d676c21313d86cfc947e67ae77b3 
8_2.exe 184832  cfb76e7ed7ea0d6941386213fa394505 
8d2b58e1d7d36015d0c0af372d2d1e73c75d61f6 18128  be6cc0047d632111f8e982f27bf04a12 
b4434c833e940d1824dffa67dc36aa77.vxe.htm 12139  b4434c833e940d1824dffa67dc36aa77 
1eb8ccc4065c0809a2d9f9511b9963bc.htm 19115  1eb8ccc4065c0809a2d9f9511b9963bc 
609cea023bcda51ac7791facfa527ef8.htm 12923  609cea023bcda51ac7791facfa527ef8 

The following Registry Entries were created:
..\Software\Microsoft\Windows NT\CurrentVersion\SvcHost\"LVGRB"\"QZLVGRBM"
..\Software\Microsoft\Windows NT\CurrentVersion\SvcHost\LVGRB\(Default)
..\System\CurrentControlSet\Services\QZLVGRBM\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Explorer\shellexecutehooks\"{1a404685-7563-4d02-b0f6-58b308a406a9}"
..\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\\"CallBack Ware"
..\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\"iXsyeAH"
..\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\"Resogsel"
..\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\"DBpPSp"
..\Software\Microsoft\Windows\CurrentVersion\Run\ \"MALWAREALARM"\"%PF%\MALWAREALARM\MALWAREALARM.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\ \"WINDOWS UPDATE LOADER"\"%WIN%\XPUPDATE.EXE"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware