Troj/Cridex-DE

Category: Viruses and Spyware Protection available since:26 Nov 2013 20:37:30 (GMT)
Type: Trojan Last Updated:26 Nov 2013 20:37:30 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Troj/Cridex-DE exhibits the following characteristics:

File Information

Size
91K
SHA-1
dcf2cce61dd62a428b131566327c10731e4d320c
MD5
010cc41572ed60cf1e0bcd76ae4766aa
CRC-32
2a74af98
File type
Windows executable
First seen
2013-11-26

Runtime Analysis

Copies Itself To
  • c:\Documents and Settings\test user\Application Data\KB00954719.exe
Registry Keys Created
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Run
    KB00954719.exe
    "c:\Documents and Settings\test user\Application Data\KB00954719.exe"
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings
    GlobalUserOffline
    0x00000000
Processes Created
  • c:\Documents and Settings\test user\application data\kb00954719.exe
  • c:\windows\system32\cmd.exe
DNS Requests
  • masterupdate.ru
  • montierco.ru
  • pianiykrolik.ru
  • renataltd.ru
  • updatecheck.co.ua

download Try Sophos products for free
Download now