Troj/DwnLdr-JGW

Category: Viruses and SpywareProtection available since:07 Aug 2011 17:43:09 (GMT)
Type: TrojanLast Updated:07 Aug 2011 17:43:09 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Troj/DwnLdr-JGW exhibits the following characteristics:

File Information

Size
425K
SHA-1
453aef338f73f884e38454ad75859f830bfe094d
MD5
a4c35b8bf93c44cce9b7ad02c9b4e6cb
CRC-32
bc94015f
File type
application/x-ms-dos-executable
First seen
2011-08-07

Runtime Analysis

Dropped Files
  • C:\649501.exe
    Size
    1.9M
    SHA-1
    0b6582807202e18a9fba49ed0f551ff2bb990876
    MD5
    4fb97435074182cb55bd357b1c148e29
    CRC-32
    25093c1e
    File type
    application/x-ms-dos-executable
    First seen
    2011-08-07
  • C:\Documents and Settings\All Users\Application Data\Lupita\Lupita.exe
    Size
    1.9M
    SHA-1
    0b6582807202e18a9fba49ed0f551ff2bb990876
    MD5
    4fb97435074182cb55bd357b1c148e29
    CRC-32
    25093c1e
    File type
    application/x-ms-dos-executable
    First seen
    2011-08-07
Processes Created
  • c:\649501.exe
HTTP Requests
  • http://www.indiannights.net/menu/Radcliffe/driverc.exe
DNS Requests
  • h1655219.stratoserver.net
  • www.groupe-cogit.com
  • www.hidrocalhas.com.br
  • www.holigilm.info
  • www.hwseit.com
  • www.ihp-espoir.be
  • www.indiannights.net