Troj/Agent-ABNT

Category: Viruses and Spyware Protection available since:30 Apr 2013 19:29:56 (GMT)
Type: Trojan Last Updated:30 Apr 2013 19:29:56 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Troj/Agent-ABNT exhibits the following characteristics:

File Information

Size
140K
SHA-1
0f5c43fc3ab73458a40cc4b69ebb807d1d7deda3
MD5
ff36fd9cc0aa997cee6473264ec5aff1
CRC-32
9fa182d2
File type
Windows executable
First seen
2012-08-23

Runtime Analysis

Registry Keys Created
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
    cababaafcad
    c:\Documents and Settings\test user\Application Data\26c19984-2a01-45b5-a7b3-a568af60c200ad\cababaafcad.exe
  • HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION
    winhlp32.exe
    0x00001f40
  • HKCU\Software\Adobe\CSXS.2.5
    bProofingSpace
    □)□□□□ r□□□□`q□P□□□□□□A□P□□□-□`□□P<□□□□ □□
Processes Created
  • c:\windows\twunk_32.exe
HTTP Requests
  • http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
  • http://www.microsoft.com/
DNS Requests
  • fpdownload.macromedia.com
  • lykvfwmbpuybdmub.net
  • www.microsoft.com

download Try Sophos products for free
Download now