Troj/Bredo-VV

Category: Viruses and SpywareProtection available since:20 Apr 2012 11:07:13 (GMT)
Type: TrojanLast Updated:20 Apr 2012 11:07:13 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Troj/Bredo-VV exhibits the following characteristics:

File Information

Size
33K
SHA-1
77b9e6c9bed65e5611756cddb92eaad41b1ba110
MD5
5b1e1534c828d398b0ae91820913911f
CRC-32
4c5f1ea9
File type
application/x-ms-dos-executable
First seen
2012-04-20

Runtime Analysis

Copies Itself To
  • C:\Documents and Settings\All Users\Local Settings\Temp\msdubmnax.pif
Registry Keys Created
  • HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run
    30367
    C:\DOCUME~1\ALLUSE~1\LOCALS~1\Temp\msdubmnax.pif
Processes Created
  • c:\windows\system32\wuauclt.exe
IP Connections
  • 8.8.4.4:53
DNS Requests
  • losfakers.ru