Troj/Zbot-EGE

Category: Viruses and Spyware Protection available since:18 Mar 2013 15:02:11 (GMT)
Type: Trojan Last Updated:18 Mar 2013 15:02:11 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Troj/Zbot-EGE exhibits the following characteristics:

File Information

Size
30K
SHA-1
2eb1438fcfbd3ff804eeaab5f6dfb01c94d1aca5
MD5
68f9b1e9cc41961af5bd470fe1774798
CRC-32
b8f15e9c
File type
Windows executable
First seen
2013-03-18

Runtime Analysis

Dropped Files
  • c:\Documents and Settings\test user\Local Settings\Temp\~!#2.tmp
    Size
    15K
    SHA-1
    c70f1f16f004410d67b3d1bee1bc1f05009a0005
    MD5
    57b9930bd3d8f142b0e169ada58ec45a
    CRC-32
    d1fccf2c
    File type
    Unspecified binary - probably data
    First seen
    2013-03-18
  • c:\Documents and Settings\test user\Local Settings\Temp\~!#3.tmp
    Size
    15K
    SHA-1
    ccb3d49dfb6a48d3f62bcd3c00a58b32ecf3bc2a
    MD5
    48bd0f001744af6f90d5d51422bee322
    CRC-32
    49dbd620
    File type
    Unspecified binary - probably data
    First seen
    2013-03-18
  • c:\Documents and Settings\test user\Local Settings\Temp\~!#5.tmp
    Size
    15K
    SHA-1
    ca11e39d8af55fd9151db05be3fae75e5c3962b6
    MD5
    ac67d9b18f27d38a185a4c45fd5ee672
    CRC-32
    c65e42cd
    File type
    Unspecified binary - probably data
    First seen
    2013-03-18
  • c:\Documents and Settings\test user\Local Settings\Temp\~!#4.tmp
    Size
    15K
    SHA-1
    787b11f1b763b6aa41a0f6f0a363f1cf87bad024
    MD5
    eae22ae9a256bb0ea3a5e235d60b738d
    CRC-32
    e4cd7de0
    File type
    Unspecified binary - probably data
    First seen
    2013-03-18
HTTP Requests
  • http://clubport.net/r.htm
  • http://ist118.com/d.htm
  • http://rooticaldubber.com/y.htm
  • http://www.dogaggressiontraining.com/h.htm
DNS Requests
  • clubport.net
  • ist118.com
  • rooticaldubber.com
  • www.dogaggressiontraining.com

download Try Sophos products for free
Download now