Home Malware Programs Trojans Generic Downloader.x!dcv

Generic Downloader.x!dcv

Posted: March 9, 2010

Generic Downloader.x!dcv is a Trojan that when executed will drop malware on the infected computer. Trojan-Generic Downloader.x!dcv will also attempt to connect to a distant server and download additional threats. Use a proven malware remover to terminate Generic Downloader.x!dcv as soon as it has been detected.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %AppData%\SystemProc
    2 %AppData%\SystemProc\lsass.exe
    3 %ProgramFiles%\Mozilla Firefox\extensions\{9CE11043 -9A15-4207-A565-0C94C42D590D}
    4 %ProgramFiles%\Mozilla Firefox\extensions\{9CE11043 -9A15-4207-A565-0C94C42D590D}\chrome
    5 %ProgramFiles%\Mozilla Firefox\extensions\{9CE11043 -9A15-4207-A565-0C94C42D590D}\chrome\content
    6 %UserProfile%\Desktop\jnotifier.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Current Version\policies\Explorer\Run]HKEY..\..\..\..{RegistryKeys}RTHDBPL = "%AppData%\SystemProc\lsass.exe"

One Comment

  • Amee Yorck says:

    Thanks for the info, but to let you know that the rouge virus doesnt let you open the task manager. Somehow i just kept pressing CTRL+ALT+DELEAT like 100 times and then it said Antivirusscandemo is not responding and i pressed end now, and I cant find it in the task manager, or in the Registry Editor.

Loading...