Submission Summary:

What's been foundSeverity Level
Contains characteristics of an identified security risk.

 

Technical Details:

 

Possible Security Risk

Security RiskDescription
Trojan-Downloader.Agent!sd6 Trojan-Downloader.Agent!sd6 attempts to download malicious files to the local computer and execute them.

Threat CategoryDescription
A program that downloads files to the local computer that may represent security risk

 

File System Modifications

#Filename(s)File SizeFile HashAlias
1 %Temp%\in1.tmp 2,495 bytes MD5: 0x30C188166D6418833A176323F852CCE9
SHA-1: 0xE1D51AEA4223F806AC1CBA3E5249DA1F8980F071
(not available)
2 [file and pathname of the sample #1] 8,192 bytes MD5: 0xA2A6455A4DA0192FB8EFE85E98FD3DFA
SHA-1: 0xA9A65198CF692A306BE1E23C9E965549B7294B26
Trojan-Downloader.Agent!sd6 [PCTools]
Downloader [Symantec]
Trojan-Downloader.Win32.Agent.aemu [Kaspersky Lab]
TROJ_AGENT.AXBZ [Trend Micro]
Mal/EncPk-EI [Sophos]
TrojanDownloader:Win32/Obitel.gen!A [Microsoft]
Trojan-Dropper.Agent [Ikarus]
Win-Trojan/Agent.8192.MQ [AhnLab]
3 %System%\stus.exe 24,576 bytes MD5: 0x39B1FFB03C2296323832ACBAE50D2AFF
SHA-1: 0xE5AEDCBE25A97C89101F1F3860FF846E94D70445
(not available)

 

Memory Modifications

Process NameProcess FilenameMain Module Size
[filename of the sample #1][file and pathname of the sample #1]20,480 bytes
stus.exe%System%\stus.exe32,768 bytes

 

Registry Modifications

 

 

All content ("Information") contained in this report is the copyrighted work of Threat Expert Ltd and its associated companies ("ThreatExpert") and may not be copied without the express permission of ThreatExpert.

The Information is provided on an "as is" basis. ThreatExpert disclaims all warranties, whether express or implied, to the maximum extent permitted by law, including the implied warranties that the Information is merchantable, of satisfactory quality, accurate, fit for a particular purpose or need, or non-infringing, unless such implied warranties are legally incapable of exclusion. Further, ThreatExpert does not warrant or make any representations regarding the use or the results of the use of the Information in terms of their correctness, accuracy, reliability, or otherwise.

Copyright © 2010 ThreatExpert. All rights reserved.