Home Malware Programs Trojans TrojanSpy:MSIL/Cologger.A

TrojanSpy:MSIL/Cologger.A

Posted: August 18, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 607
First Seen: August 18, 2011
Last Seen: March 29, 2020
OS(es) Affected: Windows

Aliases

FakeAlert.AFP [AVG]Mal/FakeAV-NO [Sophos]FakeAlert-Rena.ad [McAfee]SHeur4.G [AVG]Trojan.Win32.Scar [Ikarus]Trojan.DownLoader4.46352 [DrWeb]Mal/FakeAV-L [Sophos]Trojan.Generic.KDV.323849 [BitDefender]Trojan.Win32.Scar.enzn [Kaspersky]Win32:Delf-QBF [Trj] [Avast]a variant of Win32/TrojanDownloader.Delf.QRH [NOD32]Generic.dx!bajm [McAfee]Mal/VB-F [Sophos]TR/VB.Downloader.Gen [AntiVir]Gen:Trojan.Heur.VB.cm0@cyGjkMP [BitDefender]
More aliases (71)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\update.7.1\svchostdriver.exe File name: svchostdriver.exe
Size: 382.46 KB (382464 bytes)
MD5: 8355fef434b5d4dc9a3113a754a3fc8d
Detection count: 557
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\update.7.1
Group: Malware file
Last Updated: March 29, 2020
%TEMP%\Low\dwo.exe File name: dwo.exe
Size: 352.76 KB (352768 bytes)
MD5: aa1a2ee34e3fe07f1653bd57a6b42814
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\Low
Group: Malware file
Last Updated: August 25, 2011
%WINDIR%\system32\svcgost.exe File name: svcgost.exe
Size: 40.96 KB (40960 bytes)
MD5: 28998a94b0b86438ca61336295aca617
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: August 22, 2011
%WINDIR%\SysWOW64\twloaddB1.dll File name: twloaddB1.dll
Size: 724.99 KB (724992 bytes)
MD5: 63814c715ab5225351c0927ab2015aa6
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\SysWOW64
Group: Malware file
Last Updated: August 19, 2011
Loading...