Troj/Fynloski-U exhibits the following characteristics:
File Information
- Size
- 978K
- SHA-1
- 755997a5038b89b4c4b3f0c3c23acc21ac209058
- MD5
- ec7d90e558e6bc06ba0a35fec9212212
- CRC-32
- 1efade14
- File type
- Windows executable
- First seen
- 2012-11-13
Runtime Analysis
Copies Itself To
- c:\Documents and Settings\test user\Application Data\sistem.exe
Dropped Files
- c:\Documents and Settings\test user\Local Settings\Temp\AppLaunch\sistem.exe
Registry Keys Created
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run
- sistem
- c:\Documents and Settings\test user\Application Data\sistem.exe
- HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System
- EnableLUA
- 0x00000000
Processes Created
- c:\Documents and Settings\test user\local settings\temp\applaunch\sistem.exe
DNS Requests