Home Malware Programs Trojans VirTool:MSIL/Injector.P

VirTool:MSIL/Injector.P

Posted: February 13, 2012

Threat Metric

Ranking: 16,755
Threat Level: 8/10
Infected PCs: 10,598
First Seen: February 13, 2012
Last Seen: August 12, 2023
OS(es) Affected: Windows

VirTool:MSIL/Injector.P is a Trojan that runs in the background and allows hackers to gain remote access and control to the targeted computer system. VirTool:MSIL/Injector.P attempts to spread by exploiting local network shares. VirTool:MSIL/Injector.P will also attempt to connect to a predefined IRC server to initiate denial-of-service (DDoS) attacks on the affected computer. The DDoS attacks will attempt to make the PC unavailable to its intended PC users. VirTool:MSIL/Injector.P should be removed immediately using a legitimate anti-malware tool.

Aliases

Suspicious file [Panda]DoS.BSN [AVG]W32/MSIL.BQ!tr [Fortinet]Trojan-Dropper.Small [Ikarus]Mal/MSIL-BQ [Sophos]BDS/IRCBot.AQ [AntiVir]Win32.HLLW.Autoruner.25074 [DrWeb]Trojan.Win32.Llac.bhiv [Kaspersky]Win32.TRCrypt.Cfi [eSafe]probably a variant of MSIL/Injector.CF [NOD32]Generic.dx!zdn [McAfee]Riskware/SpywareCease [Fortinet]Virus/Win32.Xpaj.gen [Antiy-AVL]TR/Fakealert.RF.1 [AntiVir]WIN.WORM.Virus [DrWeb]
More aliases (133)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\OApps\bho_project.dll File name: bho_project.dll
Size: 93.18 KB (93184 bytes)
MD5: fcb0587015821d6afbedf870f1938e57
Detection count: 1,183
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\OApps
Group: Malware file
Last Updated: November 5, 2018
%PROGRAMFILES%\OApps\bho_project.dll File name: bho_project.dll
Size: 93.18 KB (93184 bytes)
MD5: 96b9e924dfde133ca5dd2e0e758ac399
Detection count: 485
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\OApps
Group: Malware file
Last Updated: July 19, 2012
C:\TRASH\Virus\Free Virus Tools\InstantSpywareRemover.exe File name: InstantSpywareRemover.exe
Size: 2.1 MB (2106562 bytes)
MD5: b512f517362146b1262e5ff8ca42fcdb
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: C:\TRASH\Virus\Free Virus Tools\InstantSpywareRemover.exe
Group: Malware file
Last Updated: February 28, 2021
%SystemDrive%\Secure\SecurityCentre.exe File name: SecurityCentre.exe
Size: 389.63 KB (389632 bytes)
MD5: 1a577fe0ad080659768a9b4e21788bc8
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Secure
Group: Malware file
Last Updated: October 15, 2012
%APPDATA%\Microsoft\Protect\Credentials\audiodgi.exe File name: audiodgi.exe
Size: 9.21 KB (9216 bytes)
MD5: 5d6bb412ac6bdca174002aeb8fe3563e
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Protect\Credentials
Group: Malware file
Last Updated: February 13, 2012
%WINDIR%\system32\config\systemprofile\AppData\Roaming\54uhjseiu6rtjut.exe File name: 54uhjseiu6rtjut.exe
Size: 408.06 KB (408064 bytes)
MD5: 1afbb912b2ba0be7ca12b7891c0c75da
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32\config\systemprofile\AppData\Roaming
Group: Malware file
Last Updated: July 17, 2012
Loading...