Home Malware Programs Trojans Trojan horse Generic31.ASUA

Trojan horse Generic31.ASUA

Posted: April 12, 2013

Threat Metric

Threat Level: 9/10
Infected PCs: 28
First Seen: April 12, 2013
Last Seen: February 10, 2022
OS(es) Affected: Windows

Trojan horse Generic31.ASUA is a variant of Zbot or Zeus, a spyware program that lowers your computer's security as part of an attack campaign aimed at stealing your personal information (usually bank account credentials). Zeus has been under analysis for over a year, but Trojan horse Generic31.ASUA has attracted attention with its inclusion of new security-evading measures that appear to be targeted at PC security researchers. Although Trojan horse Generic31.ASUA is capable of terminating itself to avoid being analyzed, Trojan horse Generic31.ASUA is dangerous to any PC that Trojan horse Generic31.ASUA deems appropriate for attacking, and SpywareRemove.com malware experts heartily encourage using updated anti-malware products to detect or delete Trojan horse Generic31.ASUA as is necessary.

Trojan horse Generic31.ASUA: Just Your Standard Threat to... Everything that's on Your PC

As just a single member of a PC threat family that habitually makes usage of multiple PC threats in its attacks, Trojan horse Generic31.ASUA's symptoms can vary between different infections. Nonetheless, SpywareRemove.com malware research team feels it an onerous necessity to identify some of the most likely attacks associated with Trojan horse Generic31.ASUA and other Zeus-based Trojans, such as:

  • Unusual resource usage. PC threats associated with Trojan horse Generic31.ASUA's family ordinarily inject themselves into the memory processes of any other programs. This can, in turn, cause an unusually high expenditure of your PC's system resources, and may be a source of instability or poor performance.
  • The theft of confidential data, especially any data transferred through your browser. Attacks by Trojan horse Generic31.ASUA and its relatives may target account data for banks, social networking sites and/or FTP accounts explicitly.
  • Some components of Zeus and Trojan horse Generic31.ASUA infections also include worm functions that allow them to copy themselves to network-shared drives and removable drives. Other PCs that access these locations may, in turn, become infected.
  • Trojan horse Generic31.ASUA also may assist Zeus in disabling security features and, from there, allowing criminals to control your PC by way of a backdoor vulnerability.

The Trojan that's Happy to Disable Itself When Warranted

Some of the latest analyses of Trojan horse Generic31.ASUA also have turned up additional details of interest to SpywareRemove.com malware experts. Besides playing a part in typical Zeus-related attacks, Trojan horse Generic31.ASUA also includes CLSID-comparing functions that prevent Trojan horse Generic31.ASUA from being launched on PCs associated with various PC security companies. Since the relevant functions include hard-coded data, it seems probable that the attacked PC is analyzed as a target before Trojan horse Generic31.ASUA even is installed and launched. However, an open connection with a criminal C&C server may be in play before Trojan horse Generic31.ASUA's installation.

Because of both the above facts and the fact that Trojan horse Generic31.ASUA's family is noted for its other robust defenses, SpywareRemove.com malware analysts urge you to use only advanced anti-malware tools for finding or deleting Trojan horse Generic31.ASUA. Trojan horse Generic31.ASUA's characteristics were only identified recently, and you should be certain to update your anti-malware products to their latest threat databases before trying to remove Trojan horse Generic31.ASUA.

Loading...