Home Malware Programs Trojans Vundo.gen!Y

Vundo.gen!Y

Posted: February 21, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 30
First Seen: February 21, 2011
OS(es) Affected: Windows

Aliases

Trojan-Banker.Win32.Banbra [Ikarus]TR/Spy.Banker.Gen [AntiVir]Trojan.Packed.Based [DrWeb]Packed.Win32.MPEC.Gen [Comodo]Sus/ComPack [Sophos]a variant of Win32/Spy.Banker.WBG [NOD32]Artemis!ED8792465656 [McAfee]E404Bho:Adware-b [Prevx1]Mal/Heuri-E [Sophos]Sus/ComPack-C [Sophos]W32/Heuristic-210!Eldorado [F-Prot](Suspicious) - DNAScan [CAT-QuickHeal]Generic12.AEAM [AVG]W32/Monder.AELZ!tr [Fortinet]Trojan.Vundo [Ikarus]
More aliases (33)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\Direct Folders\df.exe File name: df.exe
Size: 269.82 KB (269824 bytes)
MD5: 2ec5eccda80e3c4854d0ab521f537a68
Detection count: 31
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Direct Folders
Group: Malware file
Last Updated: February 22, 2011
%WINDIR%\system32\e404d.dll File name: e404d.dll
Size: 46.59 KB (46592 bytes)
MD5: e4e44f03d4a5d5e0c21c62a60b0a5208
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: February 28, 2011
%WINDIR%\system32\igxfigoi.dll File name: igxfigoi.dll
Size: 73.21 KB (73216 bytes)
MD5: 83d3421ac5db4a852a86570b78b4f890
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: February 21, 2011
%USERPROFILE%\InstallShield Installation Information\{A5BA14E0-7384-5991B8648CBE70A4}\bootcfgx.exe File name: bootcfgx.exe
Size: 1.14 MB (1149696 bytes)
MD5: ed87924656560f11c52b78ff89f77a59
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\InstallShield Installation Information\{A5BA14E0-7384-5991B8648CBE70A4}
Group: Malware file
Last Updated: February 28, 2011
Loading...