Home Malware Programs Trojans Trojan-Dropper.Small.bgx

Trojan-Dropper.Small.bgx

Posted: April 19, 2008

Threat Metric

Ranking: 13,226
Threat Level: 9/10
Infected PCs: 3,822
First Seen: July 24, 2009
Last Seen: September 23, 2023
OS(es) Affected: Windows

Trojan-Dropper.Small.bgx is a malicious Trojan parasite. As soon as Trojan-Dropper.Small.bgx is executed, it will create a security-free backdoor on your system that will allow additional malware applications to be downloaded and installed onto your system without your authorization. Due to the malicious activities of this Trojan, your personal and financial data is placed at grave risk of being stolen by a third party. Manual removal of this Trojan may prove extremely difficult, as this parasite has the ability to mutate to remain undetected.

Aliases

Sus/Behav-200 [Sophos]Heuristic: Suspicious Self Modifying File [Prevx1]Suspicious file [Panda]Backdoor:Win32/Koceg.gen!A [Microsoft]suspicious Trojan/Worm [eSafe](Suspicious) - DNAScan [CAT-QuickHeal]TrojanDownloader:Win32/Agent.ZZC [Microsoft]TR/Crypt.XPACK.Gen [AntiVir]TROJ_SMALL.KGE [TrendMicro]Downloader [Symantec]Mal/EncPk-DB [Sophos]High Risk Cloaked Malware [Prevx1]Trj/Downloader.TVK [Panda]a variant of Win32/Kryptik.N [NOD32]Backdoor:Win32/Koceg.F [Microsoft]
More aliases (39)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



1211379344[1].exe,install.exe File name: 1211379344[1].exe,install.exe
Size: 2.03 MB (2036960 bytes)
MD5: 4f454136eb3595126a8accee86d95bcd
Detection count: 96
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
zypkhcdc.exe, wzczwvmn.exe File name: zypkhcdc.exe, wzczwvmn.exe
Size: 114.68 KB (114688 bytes)
MD5: 7ec9dab182aac50729e90e15c2ef045d
Detection count: 86
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
install.exe File name: install.exe
Size: 12.28 KB (12288 bytes)
MD5: 28653551f38c631d74ef728a574da60f
Detection count: 84
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
cftmon.exe,69311[1].exe,~.exe,spools.exe File name: cftmon.exe,69311[1].exe,~.exe,spools.exe
Size: 19.45 KB (19456 bytes)
MD5: ab068896b846ce8e5a397ce34f5c7fce
Detection count: 71
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
cftmon.exe File name: cftmon.exe
Size: 37.08 KB (37089 bytes)
MD5: 54145bc39ac401a47db4387a85e2128b
Detection count: 70
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
svchost.exe File name: svchost.exe
Size: 16.38 KB (16384 bytes)
MD5: c3d10e0ea22b6337673b097c40fa6466
Detection count: 62
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
instaler.exe File name: instaler.exe
Size: 36.32 KB (36320 bytes)
MD5: 5d7e1fa4cdd3cbcbdbf2c1741ece9392
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
antiviirus.exe File name: antiviirus.exe
Size: 21.66 KB (21668 bytes)
MD5: 1e0b9f2747dce4a867fb155e1cc01335
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
spools.exe File name: spools.exe
Size: 18.94 KB (18944 bytes)
MD5: 36fb07b232eb91b7841965d8f05e4905
Detection count: 41
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
babki.exe File name: babki.exe
Size: 32.07 KB (32076 bytes)
MD5: e332033b362a6ea888be1d41f743e8a4
Detection count: 41
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
AlrtRunOnce.dll File name: AlrtRunOnce.dll
Size: 14.37 KB (14378 bytes)
MD5: d18dea646c6d378c7bacb0ad5ac6769c
Detection count: 31
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
pxcrt.dll File name: pxcrt.dll
Size: 3.07 KB (3072 bytes)
MD5: 8077356d14df4fc38e0406a772898f61
Detection count: 25
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
kl.exe File name: kl.exe
Size: 308.01 KB (308016 bytes)
MD5: ce64e0f154a9720cfca3c1b2b482938b
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
rsh.dll File name: rsh.dll
Size: 5.12 KB (5120 bytes)
MD5: 7bc8921992325c820ad3228989457ec7
Detection count: 16
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
yatool.dll File name: yatool.dll
Size: 9.21 KB (9216 bytes)
MD5: 1c3bc9a4710827a2b3d533ff9b145043
Detection count: 15
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
gdid32.dll File name: gdid32.dll
Size: 7.68 KB (7680 bytes)
MD5: 7bdd0af3e54330d3adafd1f9a1c208fa
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
cftmon.exe File name: cftmon.exe
Size: 70.86 KB (70866 bytes)
MD5: 01cc7c60066b061a89cf1bd9c3b7c767
Detection count: 11
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
credigui.dll File name: credigui.dll
Size: 4.6 KB (4608 bytes)
MD5: 16a1f7f16da2aee59f61ff18fba4f367
Detection count: 11
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009

Registry Modifications

The following newly produced Registry Values are:

Run keysautoloadntuser
Loading...