Need help? Ask the community or hire an expert.
Go to Avira Answers
Date discovered:07/10/2012
In the wild:No
Reported Infections:Low
Distribution Potential:Low
Damage Potential:Low
File size:61.440 Bytes
MD5 checksum:599f44d8977991d33a51498faff56865
VDF version:
IVDF version:

 General Method of propagation:
   • No own spreading routine

   •  Kaspersky: Trojan-Downloader.Win32.Small.cpaq
   •  Eset: Win32/Agent.NKZ worm
   •  GData: Trojan.Generic.KDV.751234
   •  Norman: Trojan W32/Injector.BMHF

Platforms / OS:
   • Windows 2000
   • Windows XP
   • Windows 2003
   • Windows Vista
   • Windows Server 2008
   • Windows 7

Side effects:
   • Can be used to execute malicious code

 Miscellaneous String:
Furthermore it contains the following strings:
   • http://goo.**********/UPhHf?img=
   • hey c'est votre nouvelle photo de profil?
   • essa sua foto de perfil? rsrsrsrsrsrsrs
   • tung, cka paske lyp ti nket fotografi?
   • hej jeli ovo vasa nova profil skila?
   • hey ito sa iyong larawan sa profile'
   • ne fotos von dir auf deinem profil
   • la tua immagine del profilo nuovo?
   • hei er dette din nye profil bilde?
   • hej je to vasa nova slika profila?
   • hej er det din nye profil billede?
   • lol is this your new profile pic?
   • hey is dit je nieuwe profielfoto?
   • tas ir jusu jauna profila bildes?
   • sta tu foto de perfil nuevo?
   • la teva nova foto de perfil?
   • ni phaph porfil khxng khun?
   • hey ini foto profil?
   • din nya profilbild?
   • nowy obraz profil?
   • uusi profiilikuva?
   • msnmsgr.exe
   • skype.exe

 File details Programming language:
The malware program was written in Borland C++.

Description inserted by Wensin Lee on Monday, October 8, 2012
Description updated by Wensin Lee on Monday, October 8, 2012

Back . . . .