Home Malware Programs Trojans Trojan.Win32.Vilsel.akuq

Trojan.Win32.Vilsel.akuq

Posted: April 11, 2011

Trojan.Win32.Vilsel.akuq is a malicious trojan infection or bot that will download files to the computer without user's consent which will lead to security risk. Trojan.Win32.Vilsel.akuq runs in the background and enables remote access to the affected computer. Trojan.Win32.Vilsel.akuq creates a start-up registry to enable its automatic execution every time Windows launches. Trojan.Win32.Vilsel.akuq conceals itself deeply in the registry entry so that it cannot be easy deleted by security software.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Temp%\MMBPlayer\Digiface.ttf
    2 %Temp%\MMBPlayer\Generic.exe
    3 %Temp%\MMBPlayer\IEScriptErrorEliminator.exe
    4 %Temp%\MMBPlayer\notes.txt
    5 %Temp%\MMBPlayer\posxy.dll
    6 %Temp%\MMBPlayer\SQR721E.TTF
    7 %Temp%\MMBPlayer\winsizesl.mbd

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}CURRENT_USER\Software\MediaChanceHKEY_CURRENT_USER\Software\MediaChance\Multimedia Player 4.9.8HKEY_CURRENT_USER\Software\MediaChance\Multimedia Player 4.9.8\Font
Loading...