Home Malware Programs Trojans Trojan-Downloader.Agent!sd6f

Trojan-Downloader.Agent!sd6f

Posted: July 13, 2010

Trojan-Downloader.Agent!sd6f is a banking Trojan that uses malicious stealth tactics to download harmful files from the Internet. Trojan-Downloader.Agent!sd6f disables firewalls and steals sensitive financial data like credit card numbers and online banking details. Trojan-Downloader.Agent!sd6f also takes screen snapshots and downloads additional components before providing a hacker with the remote access to the compromised system. Trojan-Downloader.Agent!sd6f contains all the characteristics of an identified security risk and should be terminated immediately.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 BndDrive.dll
    2 iehr.dll
    3 msits.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}31F6FAB-ECED-4975-9EF2-C0C7BC81927BAppID\iehr.DLLSoftware\Microsoft\Clock\tempdllSoftware\Microsoft\Internet Explorer\Explorer Bars\231F6FAB-ECED-4975-9EF2-C0C7BC81927B
  • The following CLSID's were detected:
    HKEY..\..\{CLSID Path}2FF5573C-0EB5-43db-A1B2-C4326813468EEF57C179-FDEA-4255-AED0-F1847144C26869435D85-A3AD-476B-A156-79CDE0001B689815DA81-2E0C-478c-90E4-06E474E704D0
Loading...