Troj/MSIL-SG

Category: Viruses and Spyware Protection available since:05 May 2014 15:51:59 (GMT)
Type: Trojan Last Updated:05 May 2014 15:51:59 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Examples of Troj/MSIL-SG include:

Example 1

File Information

Size
462K
SHA-1
85c6e3773f6055cd7f1984b0a02dd7af5a4b9b8f
MD5
e7845c645cddc7cb28023c8d5124919d
CRC-32
000c024f
File type
Windows executable
First seen
2014-05-05

Runtime Analysis

Registry Keys Created
  • HKLM\SOFTWARE\Microsoft\ESENT\Process\sample\DEBUG
    Trace Level
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Run
    Application Identity
    c:\Documents and Settings\test user\Application Data\Microsoft FxCop\wmiApSrv.exe
Processes Created
  • c:\Documents and Settings\test user\application data\microsoft fxcop\samss.exe
  • c:\Documents and Settings\test user\application data\microsoft fxcop\wmiapsrv.exe
HTTP Requests
  • http://whatismyipaddress.com/
DNS Requests
  • smtp.mail.com
  • whatismyipaddress.com

Example 2

File Information

Size
23K
SHA-1
feb8ea21090beb85991ff38568f42ce9e1215700
MD5
de4a10943731e0d47f8291f459a6b37f
CRC-32
7e8ec4e7
File type
Windows executable
First seen
2014-05-04

download Try Sophos products for free
Download now