Troj/FakeAV-GUK

Category: Viruses and SpywareProtection available since:12 Aug 2013 16:16:34 (GMT)
Type: TrojanLast Updated:12 Aug 2013 19:51:57 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Examples of Troj/FakeAV-GUK include:

Example 1

File Information

Size
548K
SHA-1
727dc1358ac6232be417ccff65ef82a0b05697e5
MD5
36159fd660df18840c1c551f0ec998e1
CRC-32
48c5037f
File type
Windows executable
First seen
2013-08-12

Runtime Analysis

Registry Keys Created
  • HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce
    602442DE5169769F00006023E2BE7AAB
    c:\test_item.exe
HTTP Requests
  • http://219.235.1.127/api/dom/no_respond/
  • http://219.235.1.127/api/urls/
IP Connections
  • 219.235.1.127:80

Example 2

File Information

Size
548K
SHA-1
a76e7a48b0cba97fd1211acf796b8aa38778b947
MD5
1e27da9b807f477f4872900a6c421069
CRC-32
fb7b9456
File type
Windows executable
First seen
2013-08-12

Runtime Analysis

Registry Keys Created
  • HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce
    602442DE5169769F00006023E2BE7AAB
    c:\test_item.exe
HTTP Requests
  • http://219.235.1.127/api/dom/no_respond/
  • http://219.235.1.127/api/urls/
IP Connections
  • 219.235.1.127:80