Troj/Zegost-AO

Category: Viruses and Spyware Protection available since:03 Jun 2012 03:37:25 (GMT)
Type: Trojan Last Updated:28 Mar 2013 00:12:20 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Examples of Troj/Zegost-AO include:

Example 1

File Information

Size
136K
SHA-1
46363a1a1aaf1ad7c45e31754ef8f0434bbcf78f
MD5
bbef05e01e9cc740f780c13c3d239e6d
CRC-32
715db89e
File type
Windows executable
First seen
2012-06-02

Runtime Analysis

Copies Itself To
  • C:\WINDOWS\system32\sdt.exe
Registry Keys Created
  • HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    sdt
    c:□□W□□N□@O□pS□□s□□s□@e□□3□ \□0d□@.□Px□P□□ u□□ □Pr□ o□ □□□□□ e□□e□□s□PM□Pt□
DNS Requests
  • qqaa123.3322.org

Example 2

File Information

Size
255K
SHA-1
59af6d5517970a2f9a5da993fbe29791415946fb
MD5
46d499598800c5d3ae4b97a6310f2c6c
CRC-32
3ff54d99
File type
Windows executable
First seen
2012-06-02

download Try Sophos products for free
Download now