Troj/Agent-ABCC

Category: Viruses and Spyware Protection available since:07 Apr 2013 01:49:23 (GMT)
Type: Trojan Last Updated:07 Apr 2013 01:49:23 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Troj/Agent-ABCC exhibits the following characteristics:

File Information

Size
203K
SHA-1
56cdbd93cb8ac442d6d1fa4d47301742842ac7de
MD5
68e7c6b4d83b81deeb06d993db81444c
CRC-32
90b4c12c
File type
application/x-ms-dos-executable
First seen
2013-04-06

Runtime Analysis

Copies Itself To
  • F:/snkb0ptz/snkb0ptz.exe
  • c:\Documents and Settings\test user\Application Data\Tervolvtapxtvsrb.exe
Dropped Files
  • F:/autorun.inf
    Size
    2.5K
    SHA-1
    c2ed873d22fd950c093f7dc66f2735db6c53ab55
    MD5
    625cd375d8046d17d4624025c68becea
    CRC-32
    f75c855f
    File type
    Unspecified binary - probably data
    First seen
    2013-04-06
  • F:/snkb0ptz/Desktop.ini
    Size
    63
    SHA-1
    735f8b2d5f3458f8fb309da410326208b75c74c8
    MD5
    6cc375438fb76385e58c69193046dd19
    CRC-32
    7cba2fbd
    File type
    Configuration Data File (generic)
    First seen
    2012-05-30
Registry Keys Created
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Run
    Tervolvtapxtvsrb.exe
    "c:\Documents and Settings\test user\Application Data\Tervolvtapxtvsrb.exe"
Processes Created
  • c:\Documents and Settings\test user\application data\tervolvtapxtvsrb.exe
DNS Requests
  • f.eastmoon.pl
  • gigasbh.org
  • gigasphere.su
  • h.opennews.su
  • o.dailyradio.su
  • photobeat.su
  • s.richlab.pl
  • uranus.kei.su
  • xixbh.com
  • xixbh.net

download Try Sophos products for free
Download now