Win32/Agent.SFM

By GoldSparrow in Trojans | 6 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
More... More

Win32/Agent.SFM Description

Win32/Agent.SFM is a Trojan that targets credentials used to log into websites designed by cybercriminals. Win32/Agent.SFM does not send a lot of information on recent activities on the compromised machine, but is picky in transferring the gathered data. While being run, Win32/Agent.SFM drops and executes infected files on the corrupted PC from a remote server and/or the web. Win32/Agent.SFM also modifies the Windows Registry by creating Registry entries. Win32/Agent.SFM collects confidential information and various data linked to the infected computer system.

Type: Trojans

How Can You Detect Win32/Agent.SFM?

Win32/Agent.SFM Removal Details

Win32/Agent.SFM has typically the following processes in memory:

  • %RANDOM CHARACTERS1%.dll
  • %Temp%\­flash_player_update.exe

Win32/Agent.SFM creates the following files in the system:

  • %Commonappdata%\­ur
  • %Commonappdata%\­ur%RANDOM CHARACTERS2%
  • %CommonAppData%\­cf

Win32/Agent.SFM creates the following registry entries:

  • [HKEY_LOCAL_MACHINE\­SOFTWARE\­Microsoft\­Windows NT\­CurrentVersion\­Windows]

Important Article Disclaimer

ESG Support Center

This entry was last updated on 08/31/12 and posted on 08/31/12. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Home | SpyHunter Risk Assessment Model | Privacy Policy | End User License Agreement | Additional Terms and Conditions
Copyright 2003-2012. Enigma Software Group USA, LLC. All Rights Reserved.