Troj/VB-ENT is a Trojan for the Windows platform.
When run, the Trojan copies itself to <User>\Local Settings\Application Data\<RANDOM>\StartService.exe and creates the following registry entry:
HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\Windows
Explorer.EXE
<Windows>\Explorer.EXE:*:Enabled:Windows Messenger
The Trojan also creates the following run keys:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
StartService<RANDOM>
<User>\Local Settings\Application Data\<RANDOM>\StartService.exe
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
StartService<RANDOM>
"<User>\Local Settings\Application Data\<RANDOM>\StartService.exe