Troj/Yakes-Q exhibits the following characteristics:
File Information
- Size
- 82K
- SHA-1
- d1bcb73e107d7380fbb097acffd5fbc8ef1d76f3
- MD5
- c25bd4a693a8737b08bb36f447ca5055
- CRC-32
- 8100acaf
- File type
- Windows executable
- First seen
- 2013-02-18
Runtime Analysis
Copies Itself To
- c:\Documents and Settings\test user\Application Data\skype.dat
Registry Keys Modified
- HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon
- Shell
- explorer.exe,c:\Documents and Settings\test user\Application Data\skype.dat
Processes Created
- c:\windows\system32\svchost.exe