Troj/Mdrop-GDB

Kategorie: Viren und Spyware Schutz verfügbar seit:21 Jul 2014 16:19:16 (GMT)
Typ: Trojan Zuletzt aktualisiert:21 Jul 2014 16:19:16 (GMT)
Verbreitung:

Download Kostenloses Virus Removal Tool downloaden – Finden Sie Bedrohungen, die Ihre Virenschutzsoftware übersehen hat

Troj/Mdrop-GDB exhibits the following characteristics:

File Information

Size
191K
SHA-1
efd11b782fb2ab225e2231c563f5860c804ece07
MD5
3b00a5f975aee272b9b8973ae04bb1c5
CRC-32
2baf8195
File type
Windows executable
First seen
2014-07-21

Runtime Analysis

Dropped Files
  • c:\Documents and Settings\test user\Local Settings\Temp\PC_2\wsxupdate.exe
    Size
    165K
    SHA-1
    f34e6c6721d472190dfe6365bb612a9c47cb69e7
    MD5
    45e390a48b8d82e93b62da30272640b0
    CRC-32
    9c2ebc74
    File type
    Windows executable
    First seen
    2014-07-19
Registry Keys Created
  • HKCU\Software\AppDataLow
    {d42d0afb-3638-4326-b67b-b0cb954fba94}
    C:\DOCUME~1\support\LOCALS~1\Temp\PC_2\wsxupdate.exe
Processes Created
  • c:\docume~1\support\locals~1\temp\pc_2\wsxupdate.exe
  • c:\windows\system32\powercfg.exe
  • c:\windows\system32\svchost.exe
HTTP Requests
  • http://-\x80L\x01\x03
DNS Requests
  • updatens.net