Troj/ItaDuke-A

Category: Viruses and Spyware Protection available since:28 Feb 2013 19:01:50 (GMT)
Type: Trojan Last Updated:28 Feb 2013 19:01:50 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Examples of Troj/ItaDuke-A include:

Example 1

File Information

Size
327K
SHA-1
1006ff373306eb2ac0c14cc4b17c170585d845b9
MD5
cd717c79fa5fdc2758e2c90d49d7da7a
CRC-32
fb943af4
File type
Windows executable
First seen
2013-02-27

Runtime Analysis

Registry Keys Created
  • HKCU\Software\Microsoft\ApplicationManager
    AppID
    0x19e9e919
HTTP Requests
  • http://news.grouptumbler.com/news/feed.php
DNS Requests
  • news.grouptumbler.com

Example 2

File Information

Size
327K
SHA-1
15c75472f160f082f6905d57a98de94c026e2c56
MD5
738c60fff066934b6f33e368cfe9a88c
CRC-32
e6a5c56f
File type
Windows executable
First seen
2013-02-27

Runtime Analysis

Registry Keys Created
  • HKCU\Software\Microsoft\ApplicationManager
    AppID
    0xc7ccccc7
HTTP Requests
  • http://info.leveldelta.com/php/text.php
DNS Requests
  • info.leveldelta.com

Example 3

File Information

Size
327K
SHA-1
493d0660c9cf738be08209bfd56351d4cf075877
MD5
86ef8f5f62ae8590d6edf45e04806515
CRC-32
91055731
File type
application/x-ms-dos-executable
First seen
2013-02-27

Runtime Analysis

Registry Keys Created
  • HKCU\Software\Microsoft\ApplicationManager
    AppID
    0x8dd3d38d
HTTP Requests
  • http://info.leveldelta.com/php/text.php
DNS Requests
  • info.leveldelta.com

download Try Sophos products for free
Download now