Malware Information

Malware nameTrojan.Dropper.Dldr.Agent.asyh.1
TypeTrojan
Affected platformWin32
Media-Typeapplication/rar
MD5 checksum75EF772716D920456BAB8AF3B5DC7A4B
Static fileyes
Filesize243,811 Bytes
Alias names
(also known as)
SophosMal/EncPk-GY
McAfeeVundo
CA ETrustWin32/SillyDl.GFU
Protection
Webwasher Anti Malware7001.1022.x
Side effects
  • Drops a file
  • Drops malicious files
PropagationNo own spreading routine

Description:

Files

The following files are created:

%malware execution directory%\readme.bat
%malware execution directory%\setup.exe Furthermore it gets executed after it was fully created. Further investigation pointed out that this file is malware, too. Detected as: 3550

%malware execution directory%\readme.exe Furthermore it gets executed after it was fully created. Further investigation pointed out that this file is malware, too. Detected as: 2350

%malware execution directory%\serial.exe Furthermore it gets executed after it was fully created. Further investigation pointed out that this file is malware, too. Detected as: Trojan.Dldr.Small.ahtu

File details

Runtime packer:
In order to aggravate detection and reduce size of the file it is packed with the following runtime packer:
• RAR SFX