Threat Database Trojans Trojan.MyDoom.F

Trojan.MyDoom.F

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 18,329
Threat Level: 80 % (High)
Infected Computers: 82
First Seen: August 27, 2021
Last Seen: May 12, 2026
OS(es) Affected: Windows

The detection of Trojan.MyDoom.F on your system indicates a potential security threat that requires immediate attention. This type of malware is designed to compromise the security and integrity of your computer, and it's essential to understand its characteristics and take steps to remove it.

What Is Trojan.MyDoom.F?

Trojan.MyDoom.F is a type of malware that falls under the category of Trojans, which are malicious programs that disguise themselves as legitimate software. The name "Trojan" is derived from the legendary Trojan Horse, which was used to sneak enemy forces into a secure area. Similarly, Trojan malware sneaks into your system by masquerading as a harmless program or file. Once inside, it can cause significant damage, including data theft, system crashes, and unauthorized access to your computer.

How Trojan.MyDoom.F Operates

Trojan.MyDoom.F, like other Trojans, operates by exploiting vulnerabilities in your system or tricking you into installing it. It may arrive as an email attachment, a downloaded file, or a program installed from a compromised website. Once installed, it can create backdoors, allowing remote access to your system, or download additional malware to further compromise your computer. It may also modify system settings, disable security software, or steal sensitive information such as passwords, credit card numbers, or personal data.

Symptoms of Infection

Identifying a Trojan.MyDoom.F infection can be challenging, as it often disguises itself as a legitimate program. However, some common symptoms may indicate its presence. These include unusual system behavior, such as slow performance, frequent crashes, or unfamiliar programs running in the background. You may also notice suspicious network activity, unexpected changes to system settings, or pop-ups and ads appearing on your computer. If you suspect that your system is infected, it's crucial to take immediate action to prevent further damage.

  • Unexplained system crashes or freezes
  • New, unfamiliar programs or icons on your desktop
  • Changes to your system settings or browser configuration
  • Increased network activity or unexpected data transfers

How to Remove Trojan.MyDoom.F

  1. Boot your computer in Safe Mode with Networking to prevent the malware from loading and to allow for internet access. This will enable you to download and install removal tools.
  2. Use a reputable anti-malware tool, such as SpyHunter, to perform a full scan of your system. This will help identify and remove the Trojan and any associated malware.
  3. Uninstall any suspicious programs or applications that you don't recognize or that were installed around the time of the infection. Be cautious and only remove programs that you are certain are malicious.
  4. Reset your web browsers, including Chrome, Firefox, and Edge, to their default settings. This will remove any malicious extensions or add-ons that may have been installed by the Trojan.
  5. Reboot your computer and perform another full scan with your anti-malware tool to ensure that the Trojan and any associated malware have been completely removed.

Conclusion

Removing Trojan.MyDoom.F from your system requires careful attention to detail and a thorough understanding of the malware's characteristics. By following the steps outlined above and taking proactive measures to secure your system, you can help prevent future infections and protect your sensitive data. Remember to always be cautious when downloading software or opening email attachments, and keep your operating system and security software up to date to ensure the best possible protection against malware threats.

Analysis Report

General information

Family Name: Trojan.MyDoom.F
Packers: UPX!
Signature status: No Signature

Known Samples

MD5: 0a9d25fe005d6e5abbba3fc8209e04ff
SHA1: 808c73a6c325a532a7171aa074409cd5441b8b3c
SHA256: F587659CCA9A849EBD729FA9FBE4680C6A026F80CF3C2D9CE08E9DF0D25D2959
File Size: 146.94 KB, 146944 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have resources
  • File doesn't have security information
  • File has been packed
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
Show More
  • File is Native application (NOT .NET application)
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Traits

  • No Version Info
  • packed
  • x86

Block Information

Total Blocks: 376
Potentially Malicious Blocks: 147
Whitelisted Blocks: 228
Unknown Blocks: 1

Visual Map

x 0 x 0 x x x x x x x x x 0 x x x x x x x x x x x x x x x x x x x x x x x x x x x 0 x x 0 x 0 0 x 0 x x x x x x x x x 0 x x x x ? 0 x x x x x 0 x x x x x x x 0 0 x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x 0 x x x x 0 x x x x 0 x x x x x x x x x x x x x x x x x x 2 0 1 0 0 1 1 0 0 0 0 0 0 1 0 0 1 1 0 0 2 0 0 1 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 1 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 3 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 1 0 0 1 0 0 1 0 0 0 0 0 1 1 0 0 1 0 0 0 2 2 0 0 0 0 0 0 0 0 1 1 0 0 1 0 0 0 1 0 0 1 0 0 1 0 0 0 0 0 0 0 0 0 1 1 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 0 0 1 0 0 1 0 1 1 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Files Modified

File Attributes
c:\windows\64e3b2 Generic Write,Read Attributes

Registry Modifications

Key::Value Data API Name
HKCU\software\microsoft\windows\currentversion\explorer\advanced::hidden  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\security center::antivirusoverride  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\security center::antivirusdisablenotify  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\security center::firewalldisablenotify  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\security center::firewalloverride  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\security center::updatesdisablenotify  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\security center::uacdisablenotify  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\security center\svc::antivirusoverride  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\security center\svc::antivirusdisablenotify  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\security center\svc::firewalldisablenotify  RegNtPreCreateKey
Show More
HKLM\software\wow6432node\microsoft\security center\svc::firewalloverride  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\security center\svc::updatesdisablenotify  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\security center\svc::uacdisablenotify  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings::globaluseroffline RegNtPreCreateKey
HKLM\software\microsoft\windows\currentversion\policies\system::enablelua RegNtPreCreateKey
HKLM\system\controlset001\services\sharedaccess\parameters\firewallpolicy\standardprofile::enablefirewall RegNtPreCreateKey
HKLM\system\controlset001\services\sharedaccess\parameters\firewallpolicy\standardprofile::donotallowexceptions RegNtPreCreateKey
HKLM\system\controlset001\services\sharedaccess\parameters\firewallpolicy\standardprofile::disablenotifications  RegNtPreCreateKey
HKCU\software\qnco\6f318400::4f76fefc_ RegNtPreCreateKey
HKCU\software\qnco\6f318400::30a399d9_ 저鎎 RegNtPreCreateKey
HKCU\software\qnco\6f318400::f_52a2f6f ⠃ࢬ RegNtPreCreateKey
HKCU\software\qnco\6f318400::10_3b47de74 耒㧵 RegNtPreCreateKey
HKCU\software\qnco\6f318400::14_4f338648 : RegNtPreCreateKey
HKCU\software\qnco\6f318400::15_4f338648 㠔つ RegNtPreCreateKey
HKCU\software\qnco\6f318400::1c_36f75301 ꀚ襥 RegNtPreCreateKey
HKCU\software\qnco\6f318400::24_da2e906e 䀀虃 RegNtPreCreateKey
HKCU\software\qnco\6f318400::25_da2e906e 退댑 RegNtPreCreateKey
HKCU\software\qnco\6f318400::26_d640d89a ��� RegNtPreCreateKey
HKCU\software\qnco\6f318400::17_f7cdf346 鋶 RegNtPreCreateKey
HKCU\software\qnco\6f318400::19_31520a8a 頎 RegNtPreCreateKey
HKCU\software\qnco\6f318400::20_d4e9acec RegNtPreCreateKey
HKCU\software\qnco\6f318400::21_94d7cd82 塂翔 RegNtPreCreateKey
HKCU\software\qnco::11_0 擐 RegNtPreCreateKey
HKCU\software\qnco::12_0 RegNtPreCreateKey
HKCU\software\qnco::13_0 権ă RegNtPreCreateKey
HKCU\software\qnco::14_0 RegNtPreCreateKey
HKCU\software\qnco::11_1 廹礓 RegNtPreCreateKey
HKCU\software\qnco::12_1 ⁤㘲 RegNtPreCreateKey
HKCU\software\qnco::13_1 夘㜱 RegNtPreCreateKey
HKCU\software\qnco::14_1 ㌱㘲 RegNtPreCreateKey
HKCU\software\qnco::11_2 䏜푗 RegNtPreCreateKey
HKCU\software\qnco::12_2 痕汤 RegNtPreCreateKey
HKCU\software\qnco::13_2 ో浧 RegNtPreCreateKey
HKCU\software\qnco::14_2 晢汤 RegNtPreCreateKey
HKCU\software\qnco::11_3 ꩩ RegNtPreCreateKey
HKCU\software\qnco::12_3 蕣ꊖ RegNtPreCreateKey
HKCU\software\qnco::13_3 ꎕ RegNtPreCreateKey
HKCU\software\qnco::14_3 馓ꊖ RegNtPreCreateKey
HKCU\software\qnco::11_4 쐌迢 RegNtPreCreateKey
HKCU\software\qnco::12_4 ��� RegNtPreCreateKey
HKCU\software\qnco::13_4 ��� RegNtPreCreateKey
HKCU\software\qnco::14_4 ���� RegNtPreCreateKey
HKCU\software\qnco::11_5 鈽ౘ RegNtPreCreateKey
HKCU\software\qnco::12_5 ໺ RegNtPreCreateKey
HKCU\software\qnco::13_5 關࿹ RegNtPreCreateKey
HKCU\software\qnco::14_5 ￵໺ RegNtPreCreateKey
HKCU\software\qnco::11_6 粘⤠ RegNtPreCreateKey
HKCU\software\qnco::12_6 ᎛䔭 RegNtPreCreateKey
HKCU\software\qnco::13_6 夏䐮 RegNtPreCreateKey
HKCU\software\qnco::14_6 ㌦䔭 RegNtPreCreateKey
HKCU\software\qnco::11_7 ݪ⺥ RegNtPreCreateKey
HKCU\software\qnco::12_7 煨筟 RegNtPreCreateKey
HKCU\software\qnco::13_7 ౾穜 RegNtPreCreateKey
HKCU\software\qnco::14_7 晗筟 RegNtPreCreateKey
HKCU\software\qnco::11_8 圶吹 RegNtPreCreateKey
HKCU\software\qnco::12_8 蟊놑 RegNtPreCreateKey
HKCU\software\qnco::13_8 낒 RegNtPreCreateKey
HKCU\software\qnco::14_8 馈놑 RegNtPreCreateKey
HKCU\software\qnco::11_9 ଇ벊 RegNtPreCreateKey
HKCU\software\qnco::12_9 혐 RegNtPreCreateKey
HKCU\software\qnco::13_9 Ꚑ RegNtPreCreateKey
HKCU\software\qnco::14_9 첹 RegNtPreCreateKey
HKCU\software\qnco::11_10 黐턢 RegNtPreCreateKey
HKCU\software\qnco::12_10 ᷵ RegNtPreCreateKey
HKCU\software\qnco::13_10 闃ᳶ RegNtPreCreateKey
HKCU\software\qnco::14_10 ↑᷵ RegNtPreCreateKey
HKCU\software\qnco::11_11 窥疫 RegNtPreCreateKey
HKCU\software\qnco::12_11 ⬐吨 RegNtPreCreateKey
HKCU\software\qnco::13_11 夲唫 RegNtPreCreateKey
HKCU\software\qnco::14_11 ㌛吨 RegNtPreCreateKey
HKCU\software\qnco::11_12 钅ꋙ RegNtPreCreateKey
HKCU\software\qnco::12_12 秼詚 RegNtPreCreateKey
HKCU\software\qnco::13_12 ౥譙 RegNtPreCreateKey
HKCU\software\qnco::14_12 晌詚 RegNtPreCreateKey
HKCU\software\qnco::11_13 凃⮬ RegNtPreCreateKey
HKCU\software\qnco::12_13 計삌 RegNtPreCreateKey
HKCU\software\qnco::13_13 솏 RegNtPreCreateKey
HKCU\software\qnco::14_13 饽삌 RegNtPreCreateKey
HKCU\software\qnco::11_14 途⨡ RegNtPreCreateKey
HKCU\software\qnco::12_14 ھ� RegNtPreCreateKey
HKCU\software\qnco::13_14 ꚇ RegNtPreCreateKey
HKCU\software\qnco::14_14 첮 RegNtPreCreateKey
HKCU\software\qnco::11_15 a�č RegNtPreCreateKey
HKCU\software\qnco::12_15 ⳰ RegNtPreCreateKey
HKCU\software\qnco::13_15 闶ⷳ RegNtPreCreateKey
HKCU\software\qnco::14_15 ￟⳰ RegNtPreCreateKey
HKCU\software\qnco::11_16 沪䅻 RegNtPreCreateKey
HKCU\software\qnco::12_16 ⦹挣 RegNtPreCreateKey
HKCU\software\qnco::13_16 夹戠 RegNtPreCreateKey
HKCU\software\qnco::14_16 ㌐挣 RegNtPreCreateKey
HKCU\software\qnco::11_17 껿饭 RegNtPreCreateKey
HKCU\software\qnco::12_17 繊饕 RegNtPreCreateKey
HKCU\software\qnco::13_17 ౨顖 RegNtPreCreateKey
HKCU\software\qnco::14_17 晁饕 RegNtPreCreateKey
HKCU\software\qnco::11_18 嗌ӊ RegNtPreCreateKey
HKCU\software\qnco::12_18 膦쾇 RegNtPreCreateKey
HKCU\software\qnco::13_18 캄 RegNtPreCreateKey
HKCU\software\qnco::14_18 饲쾇 RegNtPreCreateKey
HKCU\software\qnco::11_19 脝輍 RegNtPreCreateKey
HKCU\software\qnco::12_19 �߹ RegNtPreCreateKey
HKCU\software\qnco::13_19 ꚊҺ RegNtPreCreateKey
HKCU\software\qnco::14_19 첣ֹ RegNtPreCreateKey
HKCU\software\qnco::11_20 ꈜ嶿 RegNtPreCreateKey
HKCU\software\qnco::12_20 㯫 RegNtPreCreateKey
HKCU\software\qnco::13_20 闽㫨 RegNtPreCreateKey
HKCU\software\qnco::14_20 ᅯ㯫 RegNtPreCreateKey
HKCU\software\qnco::11_21 ﮻鼶 RegNtPreCreateKey
HKCU\software\qnco::12_21 ⭋爞 RegNtPreCreateKey
HKCU\software\qnco::13_21 夬猝 RegNtPreCreateKey
HKCU\software\qnco::14_21 ㌅爞 RegNtPreCreateKey
HKCU\software\qnco::11_22 ⮈傈 RegNtPreCreateKey
HKCU\software\qnco::12_22 翖ꡐ RegNtPreCreateKey
HKCU\software\qnco::13_22 ట꥓ RegNtPreCreateKey
HKCU\software\qnco::14_22 昶ꡐ RegNtPreCreateKey
HKCU\software\qnco::11_23 醯 RegNtPreCreateKey
HKCU\software\qnco::12_23 ���� RegNtPreCreateKey
HKCU\software\qnco::13_23 N�� RegNtPreCreateKey
HKCU\software\qnco::14_23 g��� RegNtPreCreateKey
HKCU\software\qnco::11_24 &郠 RegNtPreCreateKey
HKCU\software\qnco::12_24 ش RegNtPreCreateKey
HKCU\software\qnco::13_24 ꚱᖷ RegNtPreCreateKey
HKCU\software\qnco::14_24 처ᒴ RegNtPreCreateKey
HKCU\software\qnco::11_25 ��� RegNtPreCreateKey
HKCU\software\qnco::12_25 䫦 RegNtPreCreateKey
HKCU\software\qnco::13_25 闠䯥 RegNtPreCreateKey
HKCU\software\qnco::14_25 ￉䫦 RegNtPreCreateKey
HKCU\software\qnco::11_26 罄ꥱ RegNtPreCreateKey
HKCU\software\qnco::12_26 ⠖脙 RegNtPreCreateKey
HKCU\software\qnco::13_26 壓耚 RegNtPreCreateKey
HKCU\software\qnco::14_26 ㋺脙 RegNtPreCreateKey
HKCU\software\qnco::11_27 闢 RegNtPreCreateKey
HKCU\software\qnco::12_27 绿띋 RegNtPreCreateKey
HKCU\software\qnco::13_27 ం뙈 RegNtPreCreateKey
HKCU\software\qnco::14_27 昫띋 RegNtPreCreateKey
HKCU\software\qnco::11_28 廢꘡ RegNtPreCreateKey
HKCU\software\qnco::12_28 臍 RegNtPreCreateKey
HKCU\software\qnco::13_28  RegNtPreCreateKey
HKCU\software\qnco::14_28 饜 RegNtPreCreateKey
HKCU\software\qnco::11_29 酅 RegNtPreCreateKey
HKCU\software\qnco::12_29 텀⎯ RegNtPreCreateKey
HKCU\software\qnco::13_29 ꚤ⊬ RegNtPreCreateKey
HKCU\software\qnco::14_29 첍⎯ RegNtPreCreateKey
HKCU\software\qnco::11_30 ㈀ RegNtPreCreateKey
HKCU\software\qnco::12_30 姡 RegNtPreCreateKey
HKCU\software\qnco::13_30 閗壢 RegNtPreCreateKey
HKCU\software\qnco::14_30 ᄒ姡 RegNtPreCreateKey
HKCU\software\qnco::11_31 朑 RegNtPreCreateKey
HKCU\software\qnco::12_31 ⦝途 RegNtPreCreateKey
HKCU\software\qnco::13_31 壆鄗 RegNtPreCreateKey
HKCU\software\qnco::14_31 ㋯途 RegNtPreCreateKey
HKCU\software\qnco::11_32 䆞鱨 RegNtPreCreateKey
HKCU\software\qnco::12_32 稛왆 RegNtPreCreateKey
HKCU\software\qnco::13_32 ఉ읅 RegNtPreCreateKey
HKCU\software\qnco::14_32 映왆 RegNtPreCreateKey
HKCU\software\qnco::11_33 �� RegNtPreCreateKey
HKCU\software\qnco::12_33 膅ﱸ RegNtPreCreateKey
HKCU\software\qnco::13_33 ﵻ RegNtPreCreateKey
HKCU\software\qnco::14_33 饑ﱸ RegNtPreCreateKey
HKCU\software\qnco::11_34 ᱋쪾 RegNtPreCreateKey
HKCU\software\qnco::12_34 휗㊪ RegNtPreCreateKey
HKCU\software\qnco::13_34 ꚫ㎩ RegNtPreCreateKey
HKCU\software\qnco::14_34 첂㊪ RegNtPreCreateKey
HKCU\software\qnco::11_35 㤍渪 RegNtPreCreateKey
HKCU\software\qnco::12_35 棜 RegNtPreCreateKey
HKCU\software\qnco::13_35 閚槟 RegNtPreCreateKey
HKCU\software\qnco::14_35 ᄈ棜 RegNtPreCreateKey
HKCU\software\qnco::11_36 筚ꃮ RegNtPreCreateKey
HKCU\software\qnco::12_36 ⓮鼏 RegNtPreCreateKey
HKCU\software\qnco::13_36 壍鸌 RegNtPreCreateKey
HKCU\software\qnco::14_36 ㋤鼏 RegNtPreCreateKey
HKCU\software\qnco::11_37 㦯納 RegNtPreCreateKey
HKCU\software\qnco::12_37 粼핁 RegNtPreCreateKey
HKCU\software\qnco::13_37 ఼푂 RegNtPreCreateKey
HKCU\software\qnco::14_37 昕핁 RegNtPreCreateKey
HKCU\software\qnco::11_38 퓸䲖 RegNtPreCreateKey
HKCU\software\qnco::12_38 肦୳ RegNtPreCreateKey
HKCU\software\qnco::13_38 ੰ RegNtPreCreateKey
HKCU\software\qnco::14_38 饆୳ RegNtPreCreateKey
HKCU\software\qnco::11_39 䋉䳏 RegNtPreCreateKey
HKCU\software\qnco::12_39 킶䆥 RegNtPreCreateKey
HKCU\software\qnco::13_39 Ꙟ䂦 RegNtPreCreateKey
HKCU\software\qnco::14_39 챷䆥 RegNtPreCreateKey
HKCU\software\qnco::11_40 ꉠ RegNtPreCreateKey
HKCU\software\qnco::12_40 矗 RegNtPreCreateKey
HKCU\software\qnco::13_40 閁盔 RegNtPreCreateKey
HKCU\software\qnco::14_40 ᄄ矗 RegNtPreCreateKey
HKCU\software\qnco::11_41 ﱧ墾 RegNtPreCreateKey
HKCU\software\qnco::12_41 ⺧긊 RegNtPreCreateKey
HKCU\software\qnco::13_41 声꼉 RegNtPreCreateKey
HKCU\software\qnco::14_41 ㋙긊 RegNtPreCreateKey

3848 additional registry modifications are not displayed above.

Windows API Usage

Category API
Other Suspicious
  • AdjustTokenPrivileges
Network Winhttp
  • WinHttpOpen
Network Winsock2
  • WSAttemptAutodialName

Trending

Most Viewed

Loading...