Threat Information for "Trojan.DownLoader.1348"

Removal Top

StopSign will automatically remove this infection with a paid membership.

Summary Top
  • Name: Trojan.DownLoader.1348
  • Aliases:
  • Date Discovered: 2006-11-30
  • Protection Added: 2006-12-07
Description Top
-- Ease of Removal

1: Uses running processes
2: Consistently named
3: Consistent file contents
4: Creates new registry entries with consistent data

-- Privacy Risks/Security Changes

1: Mimics legitimate file names

-- Damage/Intrusion/Annoyance

1: Significantly slows down the computer
2: Creates new files
3: Downloads other threats

-- Propagation/Saturation

1: Installed by other infections
2: Infects from a link in an email
3: Infects from an email attachment
Technical Details Top
  • Added Directory/File:
    FilePath: %ROOTDRIVE%comload.dll*
  • Added Registry Key:
    Key: HKCR\CLSID\{9E1089BC-1AE8-4685-8D77-6721E5C318A8}
  • Added Registry Key:
    Key: HKCR\Comload.loader2.1
  • Added Registry Key:
    Key: HKCR\Comload.loader.1
  • Added Registry Key:
    Key: HKCR\Interface\{F5F779A9-24E5-4BCD-9AE5-6313D4B5AC24}
  • Added Registry Key:
    Key: HKCR\CLSID\{AD7FAFB0-16D6-40C3-AF27-585D6E6453FD}
  • Added Registry Key:
    Key: HKCR\dctl
  • Added Registry Key:
    Key: HKCR\Comload.loader2
  • Added Registry Key:
    Key: HKCR\TypeLib\{266F948A-3DEE-4270-8F55-E79ACCD569FA}
  • Added Registry Key:
    Key: HKCR\Comload.loader
  • Added Registry Key:
    Key: HKCR\Interface\{19E91D82-7AD7-419F-866A-58C122DB1459}