Troj/Matsnu-Z

Category: Viruses and Spyware Protection available since:10 Apr 2013 05:30:18 (GMT)
Type: Trojan Last Updated:10 Apr 2013 05:30:18 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Troj/Matsnu-Z exhibits the following characteristics:

File Information

Size
88K
SHA-1
162864ebafee5a0728a440501eabdccea4abcef0
MD5
c1d6518e93ccf07c032d286b02a7ef3a
CRC-32
ea804310
File type
application/x-ms-dos-executable
First seen
2013-03-31

Runtime Analysis

Registry Keys Created
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
    cababaafcad
    c:\Documents and Settings\test user\Application Data\26c19984-2a01-45b5-a7b3-a568af60c200ad\cababaafcad.exe
  • HKCU\Software\Adobe\CSXS.2.5
    tLastP_Reader
    □)□□□□ r□□□□ f□`□□□□□□A□□□□□-□p□□P<□□□□ □□
  • HKCU\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION
    winhlp32.exe
    0x00001f40
Processes Created
  • c:\windows\twunk_32.exe
HTTP Requests
  • http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
  • http://www.microsoft.com/
DNS Requests
  • fpdownload.macromedia.com
  • fsepzqgvjosv.net
  • www.microsoft.com

download Try Sophos products for free
Download now