Home / Spyware Encyclopedia / Trojan.Agent
 Trojan.Agent Technical Details
Category Trojan
Discovered 4/11/2005 12:00:00 AM
Modified 1/12/2010 4:07:53 PM
Threat Level Critical
Category Description

A destructive program that masquerades as a benign application. Unlike viruses, Trojan horses do not replicate themselves but they can be just as destructive. One of the most insidious types of Trojan horse is a program that claims to rid your computer of viruses but instead introduces viruses onto your computer.
Notice
Summary

The following http urls were started:
•softupdate09.com/inst/index.php?affid=70&subid=0&guid=6f156c7b-6d88-4e14-881f-9a56796...
•update.pcprivacycleaner.com/FreeApp.exe
•virusremover2008.com/VRM_Free.exe?aid=ippupcpc_mrt_&a=ippupcpc&l=vrm_10&mt_info=6046_...
The hosts file was updated with the following url-to-ip mappings:
77.232.74.90 banamex.com
77.232.74.90 banamex.com.mx
77.232.74.90 boveda.banamex.com
The following internet connection was established:
68.109.11.216 : 445
68.109.11.218 : 445
68.109.11.219 : 445

The following Files were created:

NameVersionPublisherSignature (MD5)File Size (in KB)
..\bf24ca3a.exe1.0.0.0踏雪飞鹤ff73fe12388c6a1d84c14cba5a0bbac940960
..\f44c8390.exe0.0.0.0计算机反病毒论坛b1fd0add9a1d9fc712da84527c21cc09288768
..\cb0c9801.exe1.1.0.0蔷薇的羽翼7b2d99608772c32a1c5b392e6787687b907648
..\16b4cb94.exe1.0.0.1网神网络8e0f93087a579208361517927174c4f9154112
..\00133d0f.exe1.0.0.0湖北省交通规划设计院b1691c5800d3e353dbd11e9938ea5f2722016
..\2b51d310.exe3.7.2.3㊣版技术联合·综合群a109995c78fee2540c015c5874d202c4442880
..\fba3087c.exe2.0.0.0明科工作室89fb12d1f56e38cc57e6327878259a2984171
..\fe9dbc7e.dll1.0.0.1微软中国86fa24bc85da257197ef300ad7be70ec8192
..\811a122c.exe1.0.0.0店长制作e5ee272b9f11c13b2edee30df9bba689241664
..\d96cc8b9.exe5.1.1.1005奇虎网b130c42c285b127f98aec7e9289680ec696528
..\d68c33bd.exe8.0.0.454卡巴斯基实验室b1740604a3f20594911d5dfa7f8507ec432633
..\e54ce4d2.dll1.0.1.103北京金叶天翔科技有限公司fed8d638f22b36403a500c0d8e3182ec245760
..\b8305d41.exe1.0.1.3北京三七二一科技有限公司5813d9a505f1d92c69a2d748ddef7fd147104
..\c13362b7.exe1.6.5.0刘健英24fd378065ca2f43aff8cdcab567348c39424
..\744895a7.exe1.6.5.0刘健英1f0e6305fd8c1635d8397ae0d79f992257856
..\1c671331.exe3.2.0.0世界通小天使升级 V3.2b1301eb07dde6bbaf94148c9b8aae8171781760
..\F3F0A6C5.DLL1.0.1.50Zumie.com6b7cc04966e5ddb63b1c99e812b095a4487424
..\C4A27A37.EXE5.0.2169.1ZSAVJE Corporation0dadf2dc1a2bf0483c5352550482414824064
..\Temp\B9299600.EXE38.22.863.4Zrrubue Kevwykujpatafc2f33040c6991b9919e6688b44739030720
..\Temp\wpv511246307027.exe28.78.644.6Zqseweu Zojdjhypmocde5256cd6d545d6a6fcfefbdcfbfeed044544
..\meandyou.exe5.0.2169.1ZLAXAE Corporation8532ab9d5b20fb2f16a4948fd84782c2393216
..\D081C8E1.EXE0.0.0.0ZJ Computing, Inc. 5929980
..\f3cb5abc.exe6.2.0.6zhiyi148a9e180d007ac1dcee625ecb0f07d8146305
..\5302FA07.EXE1.0.0.0zhijian01342842ffb656153ff55268afdf8d36a0488835
..\11786D37.EXE1.0.0.0zhao0439f67d464eb1e32df2db06a0df3469454656
..\5C1A2E8F.EXE1.0.0.0ZEZAR6c6d5969d5f109588e57ff889764970f53248
..\084D63E8.EXE1.0.0.0ZEZAR6a475a452c6301e7fe99d915acbde364147325

The following Registry Entries were created:

..\System\CurrentControlSet\Services\svcmon
..\System\CurrentControlSet\Services\q9nld
..\System\CurrentControlSet\Services\trkwksw32time
..\System\CurrentControlSet\Services\lwuqdu9yya
..\System\CurrentControlSet\Services\ip_fw
..\System\CurrentControlSet\Services\cscenter
..\System\CurrentControlSet\Services\d027da8b
..\System\CurrentControlSet\Services\f1d7cca
..\System\CurrentControlSet\Services\kprof
..\System\CurrentControlSet\Services\eaxq67
..\System\CurrentControlSet\Services\ntwscsvc
..\System\CurrentControlSet\Services\akjevie6
..\System\CurrentControlSet\Services\internet explorer update
..\System\CurrentControlSet\Services\eth8023
..\System\CurrentControlSet\Services\nrs_service
..\System\CurrentControlSet\Services\yzphgyzi
..\System\CurrentControlSet\Services\protectedstorager1
..\System\CurrentControlSet\Services\msrkit86
..\System\CurrentControlSet\Services\b009900
..\System\CurrentControlSet\Services\windowsentserver2008
..\System\CurrentControlSet\Services\gjy05
..\System\CurrentControlSet\Services\vikuc
..\System\CurrentControlSet\Services\cfxces96
..\System\CurrentControlSet\Services\acpidisk
..\System\CurrentControlSet\Services\wdswsdewn

Recommendation to remove Trojan.Agent

Spyware Detector can remove Trojan.Agent, and thousands of other Spyware automatically and instantly. Click here to download Spyware Detector and scan for free.
Download Spyware Detector and Scan for FREE
 
Search Threats
Customer Service Rating by LivePerson