Troj/VBInjec-AL

Category: Viruses and SpywareProtection available since:07 Sep 2010 02:45:51 (GMT)
Type: TrojanLast Updated:07 Sep 2010 02:45:51 (GMT)
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Troj/VBInjec-AL exhibits the following characteristics:

File Information

Size
613K
SHA-1
708bbea9e89a21b8967a0a4a966c962ef9a91141
MD5
344c1b144b8f79c32e832b14c8309a89
CRC-32
c8d19595
File type
application/x-ms-dos-executable
First seen
2010-09-01

Other vendor detection

Avira
TR/Dropper.Gen

Runtime Analysis

Copies Itself To
  • c:\Documents and Settings\test user\Application Data\MScomm.exe
Dropped Files
  • c:\Documents and Settings\test user\Local Settings\Temp\password.txt
    Size
    32
    SHA-1
    319f7b64f73d813e90f32b227facfb38504a96eb
    MD5
    231215ed69cb0bda336d5ac7697a7d26
    CRC-32
    22684dca
    File type
    application/octet-stream
    First seen
    2010-09-01
Registry Keys Created
  • HKCU\Software\Microsoft\Windows\CurrentVersion\Run
    MScomm
    c:\Documents and Settings\test user\Application Data\MScomm.exe
Processes Created
  • c:\windows\system32\cmd.exe
  • c:\windows\system32\notepad.exe