Home Malware Programs Trojans Trojan.Vundo.gen!P

Trojan.Vundo.gen!P

Posted: December 24, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 126
First Seen: December 24, 2012
OS(es) Affected: Windows

Aliases

Backdoor.Win32.ZAccess.acbl [Kaspersky]Artemis!E56B0B2CEF81 [McAfee]Generic30.BSUQ [AVG]W32/ZAccess.AOIU!tr.bdr [Fortinet]Backdoor/Win32.ZAccess [AhnLab-V3]BDS/ZAccess.aoiu [AntiVir]BackDoor.Maxplus.5220 [DrWeb]ZeroAccess-FARJ!2DC7A0A9AA3A [McAfee]PSW.Generic9.OOK [AVG]MonitoringTool [Ikarus]Worm/Win32.Monikey [AhnLab-V3]Mal/Behav-304 [Sophos]Worm/Monikey.cc [AntiVir]Trojan.PWS.Vipgsm.712 [DrWeb]TrojWare.Win32.PSW.Nilage.~R [Comodo]
More aliases (98)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SystemDrive%\RECYCLER\S-1-5-21-1177238915-1708537768-682003330-1004\$f2a3bbee9b7d8dc1583ec9ce449c3685\n. File name: n.
Size: 54.27 KB (54272 bytes)
MD5: 2dc7a0a9aa3ac69a5aeb78b840ece318
Detection count: 54
Path: %SystemDrive%\RECYCLER\S-1-5-21-1177238915-1708537768-682003330-1004\$f2a3bbee9b7d8dc1583ec9ce449c3685
Group: Malware file
Last Updated: December 27, 2012
%SystemDrive%\RECYCLER\S-1-5-21-2052111302-1757981266-725345543-1003\$6725da570fec1a84a0543e31f3a18c71\n. File name: n.
Size: 53.24 KB (53248 bytes)
MD5: e56b0b2cef81b007db406ff95ca22b37
Detection count: 47
Path: %SystemDrive%\RECYCLER\S-1-5-21-2052111302-1757981266-725345543-1003\$6725da570fec1a84a0543e31f3a18c71
Group: Malware file
Last Updated: January 5, 2013
%APPDATA%\Microsoft\Windows\Templates\msidcrl40.exe File name: msidcrl40.exe
Size: 5.63 KB (5632 bytes)
MD5: e273ef98d5f17311a34343e300d098e3
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Templates
Group: Malware file
Last Updated: December 26, 2012
%PROGRAMFILES%\Internet Explorer\lsass.exe File name: lsass.exe
Size: 20.99 KB (20992 bytes)
MD5: 3ed54157b290f23bb79717d8002824de
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Internet Explorer
Group: Malware file
Last Updated: December 26, 2012
Loading...