Home Malware Programs Trojans Trojan.Win32.Vilsel.azvm

Trojan.Win32.Vilsel.azvm

Posted: July 22, 2011

Trojan.Win32.Vilsel.azvm is a misleading Trojan infection, which downloads malicious files on to a PC system it corrupted. Trojan.Win32.Vilsel.azvm opens up a backdoor for attackers to gain remote access to your PC. The attackers use Trojan.Win32.Vilsel.azvm to execute a lot of operations such as keystroke logging, data theft, changing or deletion of files. Trojan.Win32.Vilsel.azvm can be installed through email attachments, websites including executable content, software bundling, instant-messaging network, etc. Trojan.Win32.Vilsel.azvm is so complicated to detect and remove from your PC system. Remove Trojan.Win32.Vilsel.azvm by using a powerful anti-virus application.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %AppData%\1syeu7w374ji4lw20h06y3
    2 %CommonAppData%\1syeu7w374ji4lw20h06y3
    3 %Temp%\1syeu7w374ji4lw20h06y3
    4 %Templates%\1syeu7w374ji4lw20h06y3

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Classes\.exeHKEY_CURRENT_USER\Software\Classes\.exe\DefaultIconHKEY_CURRENT_USER\Software\Classes\.exe\shellHKEY_CURRENT_USER\Software\Classes\.exe\shell\openHKEY_CURRENT_USER\Software\Classes\.exe\shell\open\commandHKEY_CURRENT_USER\Software\Classes\.exe\shell\runasHKEY_CURRENT_USER\Software\Classes\.exe\shell\runas\commandHKEY_CURRENT_USER\Software\Classes\exefileHKEY_CURRENT_USER\Software\Classes\exefile\DefaultIconHKEY_CURRENT_USER\Software\Classes\exefile\shellHKEY_CURRENT_USER\Software\Classes\exefile\shell\open
Loading...