Troj/DwnLdr-KMB

Category: Viruses and Spyware Protection available since:04 Jan 2013 23:54:03 (GMT)
Type: Trojan Last Updated:04 Jan 2013 23:54:03 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Troj/DwnLdr-KMB exhibits the following characteristics:

Runtime Analysis

Copies Itself To
  • c:\Documents and Settings\test user\Local Settings\Application Data\igxtkcuk.exe
Dropped Files
  • C:\sample.txt
    Size
    175
    SHA-1
    af9e3e882d554b5d75d9ce11d6bb56b14f647997
    MD5
    6df96747865541d31b550ecb76b0f76b
    CRC-32
    c025c59a
    File type
    application/octet-stream
    First seen
    2012-12-31
Processes Created
  • c:\windows\system32\notepad.exe
  • c:\windows\system32\svchost.exe
IP Connections
  • 184.106.214.159:8080
  • 46.4.178.174:8080
  • 50.57.135.154:8080
  • 66.84.10.68:8080
  • 74.208.111.15:8080
  • 88.191.123.128:8080

download Try Sophos products for free
Download now