Home Malware Programs Viruses Desktop Scout

Desktop Scout

Posted: March 28, 2006

Threat Metric

Ranking: 13,238
Threat Level: 8/10
Infected PCs: 2,314
First Seen: December 6, 2010
Last Seen: September 26, 2023
OS(es) Affected: Windows

Desktop Scout is a powerful commercial PC monitoring application that tracks user activity, logs all keystrokes, takes screenshots and records addresses of visited web sites. The software can be remotely controlled. It allows the person controlling it to run and terminate any application, download and manage files, view the remote screen, control the mouse and keyboard, restart or shutdown a PC. Desktop Scout is able to hide its running processes. The application must be manually installed. It secretly runs as a service on every Windows startup.

Aliases

W32/VB.JKC!tr [Fortinet]Trojan-Dropper.Win32.WormDrop [Ikarus]Win-Trojan/Vbinject.106496 [AhnLab-V3]Trojan/Win32.WormDrop.gen [Antiy-AVL]Win32/VBInject.ALK [eTrust-Vet]Trojan:W32/VB.MDK [F-Secure]Trojan-Dropper.Win32.WormDrop.bn [Kaspersky]Trojan.Gen.2 [Symantec]W32/VirTool.BWR [F-Prot]Win32/AutoRun.Agent.XN [NOD32]Hacktool [K7AntiVirus]Generic.dx!ukx [McAfee]TrojanDropper.WormDrop.bn [CAT-QuickHeal]CRCK_XPPROKEY.C [TrendMicro]Infostealer.Lineage [Sunbelt]
More aliases (428)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



Q:\TIETSIKKA\asennuslevyt\office\Microsoft - Office XP PRO - FIN\Windows.XP.Product.Key.Viewer.exe File name: Windows.XP.Product.Key.Viewer.exe
Size: 12.29 KB (12293 bytes)
MD5: 59905638234f376051b34275c51075b4
Detection count: 845
File type: Executable File
Mime Type: unknown/exe
Path: Q:\TIETSIKKA\asennuslevyt\office\Microsoft - Office XP PRO - FIN\Windows.XP.Product.Key.Viewer.exe
Group: Malware file
Last Updated: September 26, 2023
%USERPROFILE%\My Documents\CF\Silver.dll File name: Silver.dll
Size: 712.7 KB (712704 bytes)
MD5: 3d78f31898b7245351aec05daafd3755
Detection count: 92
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\My Documents\CF
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\d2d132.dll File name: d2d132.dll
Size: 284.16 KB (284160 bytes)
MD5: 90648c9afb08cec6bd4edb3d4e5fe927
Detection count: 91
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 8, 2010
%WINDIR%\win.vbe File name: win.vbe
Size: 73B (73 bytes)
MD5: 89d19a867aabc463d21914134a307478
Detection count: 84
Mime Type: unknown/vbe
Path: %WINDIR%
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\raidhost.exe File name: raidhost.exe
Size: 184.32 KB (184320 bytes)
MD5: 59550c3dce6bf6e713a7333f87a96e05
Detection count: 60
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\pp15.exe File name: pp15.exe
Size: 61.44 KB (61440 bytes)
MD5: 43a1429e44db2c86198ced6d40595cde
Detection count: 49
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: December 7, 2010
C:\Users\<username>\Downloads\worm-blaster-1.4.0.exe File name: worm-blaster-1.4.0.exe
Size: 1.24 MB (1241088 bytes)
MD5: 8c558c4fb9ebd6725b2c68f4d230f575
Detection count: 49
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Downloads\worm-blaster-1.4.0.exe
Group: Malware file
Last Updated: July 25, 2023
%ALLUSERSPROFILE%\Start Menu\Programs\Startup\Image.gif.exe File name: Image.gif.exe
Size: 73.72 KB (73728 bytes)
MD5: 0e8489fdb7b8f5fd265e0e4b269ecccd
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\dhcpcsvc32.dll File name: dhcpcsvc32.dll
Size: 316.41 KB (316416 bytes)
MD5: 7eb7d772660b0adf04fd98b06f16a031
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\help\eraseplgfi.exe File name: eraseplgfi.exe
Size: 396.8 KB (396800 bytes)
MD5: 896461f44167411e9a4191b142324a0f
Detection count: 20
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\help
Group: Malware file
Last Updated: December 7, 2010
%USERPROFILE%\ntload.dll File name: ntload.dll
Size: 59.9 KB (59904 bytes)
MD5: f1db46a1b2f4f8f62ee5ab0b97dab9dd
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%
Group: Malware file
Last Updated: December 7, 2010
%userprofile%\Local Settings\Application Data\Google\Update\GoogleUpdateBeta.exe File name: GoogleUpdateBeta.exe
Size: 53.24 KB (53248 bytes)
MD5: a21b386449f927c76603576803ca22bb
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %userprofile%\Local Settings\Application Data\Google\Update
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\icm3232.dll File name: icm3232.dll
Size: 185.85 KB (185856 bytes)
MD5: 90325e024d6d3eb97a7979518c64b8f4
Detection count: 7
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 8, 2010
%USERPROFILE%\local settings\application data\ctvlmee\yvyxjb.exe File name: yvyxjb.exe
Size: 370.43 KB (370432 bytes)
MD5: 3876b36be138904922d2166ce160d278
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\local settings\application data\ctvlmee
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\acmstsv1r2.dll File name: acmstsv1r2.dll
Size: 1.76 MB (1768960 bytes)
MD5: 8d63c3ed962e3ccd6c5fddfa4564a1a7
Detection count: 7
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\amoumain.exe File name: amoumain.exe
Size: 355.84 KB (355840 bytes)
MD5: daca1998064f165eeb7fdefddeb970cb
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: December 7, 2010
c:\cmos\xln.cpl File name: xln.cpl
Size: 1.29 MB (1293312 bytes)
MD5: b3db8937ae7fac80349e3c575d24b975
Detection count: 7
Mime Type: unknown/cpl
Path: c:\cmos
Group: Malware file
Last Updated: December 7, 2010
%TEMP%\fFollower.exe File name: fFollower.exe
Size: 325.63 KB (325632 bytes)
MD5: dd4307a3af98310fb13b1cc7661ed2dd
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\6to4v32.dll File name: 6to4v32.dll
Size: 53.24 KB (53248 bytes)
MD5: e6a5870ca1eaf1c2965887dfb209223c
Detection count: 7
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\EhStorAuthn32.dll File name: EhStorAuthn32.dll
Size: 182.78 KB (182784 bytes)
MD5: 483b5c3694fd94107ab00ff59b4204a8
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 8, 2010
notepad.exe File name: notepad.exe
Size: 71.68 KB (71680 bytes)
MD5: 1ceb91b2463e721e54613563a074a38d
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 23, 2020
%APPDATA%\winlog\winlog.exe File name: winlog.exe
Size: 354.3 KB (354304 bytes)
MD5: 8fde4c574b73105991218c9602992cea
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\winlog
Group: Malware file
Last Updated: December 7, 2010
%APPDATA%\bbizd.exe File name: bbizd.exe
Size: 106.49 KB (106496 bytes)
MD5: 5f805157a02b7693864d3089f4927f16
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 6, 2010

More files
Loading...