Home / Spyware Encyclopedia / Proxy.Thunker << Back

Recommendation to Automatically remove Proxy.Thunker


Our products can remove Proxy.Thunker and thousands of other Virus and Spyware automatically and instantly.

Proxy.Thunker Details


  • Category Proxy
  • Discovered 5/13/2009 11:37:04 AM
  • Modified 4/9/2020 5:43:12 PM
  • Threat Level High
  • Category Description
    Proxy Trojan turns the victim's computer into a proxy server. This gives the attacker the opportunity to do everything from your computer, including the possibility of conducting credit card fraud and other illegal activities, or even to use system to launch malicious attacks against other networks.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
rundll32.com 47352SQL0.0.0.67  
rundll32.com 46553H4P0.0.0.65  
Trojan-PSW.Win32.WOW.eo.exe 115200Alexander Roshal3.60.0.026772a698959e76a75c8034af9a8ddc5 
Trojan-PSW.Win32.WOW.ep.exe 20780 1.0.0.16f7302fb2e69b763feb7ec645b8d7368 
Trojan-PSW.Win32.WOW.eh.dll 101888  f9cc5310b49a66d0b632a6cd24ed73ec09/04/2020
TROJAN-PSW.WIN32.WOW.EP.EXE 20780 1.0.0.16f7302fb2e69b763feb7ec645b8d736809/04/2020
rundll32.com 48181lBmnyuySjk3420.0.0.9104b70cea35f684245bd5345fa44e9c4b11/02/2020
MH_DLL.dll 22016  06923647825561d07dda38e5f9b9368b 
svchqs.exe 38216  24587d0a670fbad9cc477ec10c9fa372 
TROJAN-PSW.WIN32.WOW.EK.EXE 15769  5ff3cb5fcc738ceddc7ce4f82bb5823d 

The following Registry Entries were created:
..\System\CurrentControlSet\Services\NetWorkLogon\"ImagePath"\"rundll32.exe KB896425.log,start"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Syetwlynus"\"%DAS.AU.LS%\Temp\trojan-psw.win32.wow.ep.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Syetwlyes"\"%WIN.SYS32%\algesteiybs.exe"
..\System\CurrentControlSet\Services\NetWorkLogon\Security\(Default)
..\Software\Microsoft\Windows\CurrentVersion\RunServices\\"Torjan Program"\"%WIN%\WINLOGON.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"torjan program"\"%win%\winlogon.exe"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware