Home Malware Programs Trojans Trojan.VB.gip

Trojan.VB.gip

Posted: December 23, 2010

Trojan.VB.gip is a malicious Trojan infection which contains a dangerous hidden functionality. Computers infected with Trojan.VB.gip may also experience Adware, Spyware, Malware, Remote access Tools, Browser Hijack Tools and Data Mining. Trojan.VB.gip poses a severe threat to system security and must be terminated before it wreaks havoc on the compromised computer. Remove it from the system immediately.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %SYSTEMROOT%\system32\prun.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{46C82107-C059-4B5A-8BEE-361B06DB044C}HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{6742CC3A-65E8-4ED9-B051-AA119195C7BE}HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{7B618C0C-8D13-4F49-8559-BE04DC96899C}HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{96F7F230-8ADE-4930-A88F-3547C6A30BFF}HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{98A60C8C-2568-4029-9FB2-F2ED7E2DA8E8}HKEY..\..\..\..{RegistryKeys}MICROSOFT\WINDOWS\CURRENTVERSION\RUN\prunnetHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ AthanHKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ExplorerHKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ System FileHKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Windows Log Agen
Loading...