Home Malware Programs Trojans Packed.Generic.244

Packed.Generic.244

Posted: November 23, 2009

Packed.Generic.244 is a variant of a malignant Trojan horse that hides its presence on a compromised PC. Packed.Generic.244 may spread via infected web links or drive-by downloads. Packed.Generic.244 may be a threat to the confidential information stored on a victim's PC. Should you detect Packed.Generic.244 on your PC, remove it immediately.

Aliases

Backdoor:Win32/FlyAgent.F (Microsoft)

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Programs%\Startup\BC5677.lnk
    2 %System%\6207E7\dp1.fne
    3 %System%\6207E7\eAPI.fne
    4 %System%\6207E7\HtmlView.fne
    5 %System%\6207E7\internet.fne
    6 %System%\6207E7\krnln.fnr
    7 %System%\C87F1A\A0AF16.EXE
    8 %Temp%\E_N4\dp1.fne
    9 %Temp%\E_N4\eAPI.fne
    10 %Temp%\E_N4\HtmlView.fne
    11 %Temp%\E_N4\internet.fne
    12 %Temp%\E_N4\krnln.fnr

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}%System%\52A565%System%\6207E7%System%\C87F1A%System%\EDAFFC%Temp%\E_N4
Loading...