| Malware name | Trojan.Dldr.VB.VYP | | Type | Trojan | | Affected platform | Win32 | | Media-Type | application/executable | | MD5 checksum | 64E2AB38DBC15AD4737FA3057127912D | | Static file | yes | | Filesize | 32,813 Bytes | Alias names (also known as) | | | Side effects | - Drops a file
- Drops a malicious file
| | Propagation | No own spreading routine |
|
Description:
Files
The following files are created:
– %TEMPDIR%\RWNHGBQM.exe Furthermore it gets executed after it was fully created.
– %TEMPDIR%\IFCQNC~1.EXE Furthermore it gets executed after it was fully created. Further investigation pointed out that this file is malware, too. Detected as:
4244