Home Malware Programs Trojans Trojan.VBKrypt

Trojan.VBKrypt

Posted: September 1, 2011

Threat Metric

Ranking: 13,222
Threat Level: 8/10
Infected PCs: 11,872
First Seen: September 1, 2011
Last Seen: December 23, 2024
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\WinDir\Svchost.exe File name: Svchost.exe
Size: 438.29 KB (438292 bytes)
MD5: 2a0891854518df00c49967670346972d
Detection count: 602
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32\WinDir
Group: Malware file
Last Updated: August 9, 2016
%APPDATA%\Adobe\Adobewin.exe File name: Adobewin.exe
Size: 315.64 KB (315645 bytes)
MD5: 44ee8d61e426b58d852bdbeebeb80f48
Detection count: 431
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Adobe
Group: Malware file
Last Updated: September 3, 2016
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\READER_SL.EXE.mal File name: READER_SL.EXE.mal
Size: 2.14 MB (2145792 bytes)
MD5: 9b1590ce19c370b4b36febb0a09cadd8
Detection count: 59
Mime Type: unknown/mal
Path: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\READER_SL.EXE.mal
Group: Malware file
Last Updated: September 22, 2021
%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Startup\reader_sl.exe File name: reader_sl.exe
Size: 155.64 KB (155648 bytes)
MD5: 9933a547a14eb80430cf1d58b3edc65f
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: March 10, 2017
system.exe File name: system.exe
Size: 1.16 MB (1163264 bytes)
MD5: 62dab87214bd2fe6dd7932713b62a16c
Detection count: 22
File type: Executable File
Mime Type: unknown/exe
Group: Malware file

More files

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Startup\reader_sl.exe%APPDATA%\Paniconograph.exe%TEMP%\Network\svchost.pif%TEMP%\Network\svchost.vbs%USERPROFILE%\user1\winlogon.exe%WINDIR%\System32\winldr.exe

Additional Information

The following directories were created:
%APPDATA%\folder%APPDATA%\svhust%TEMP%\dateMonitor%TEMP%\fg45g%TEMP%\subcon
Loading...