Threat Database Trojans VirTool:MSIL/Injector.M

VirTool:MSIL/Injector.M

By JubileeX in Trojans

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 9
First Seen: April 26, 2011
OS(es) Affected: Windows

VirTool:MSIL/Injector.M is a Trojan that affects Windows. VirTool:MSIL/Injector.M does not have an interface and can disguise itself from anti-virus programs, which could uninstall it from the compromised PC. VirTool:MSIL/Injector.M uses legitimate executable files that are components of original Microsoft applications to disguise itself from detection and deletion. VirTool:MSIL/Injector.M also incorporates a rootkit component, which also makes it hard to detect and eliminate from the corrupted PC. VirTool:MSIL/Injector.M can also add and remove tasks from Scheduled Task register and disable Safe mode. VirTool:MSIL/Injector.M can connect to a remote server, gather your personal information with the help of browser helper objects, and drop more malware threats. VirTool:MSIL/Injector.M can modify USB drives, so that it is distributed to other computers via removable devices.

VirTool:MSIL/Injector.M can also modify runtime policies, disable Windows File Protection feature, inject the code of the infection to the

startup programs, which allows the infection fall in the effect, immediately after the system is turned on.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
AVG Dropper.Generic5.BOOZ
Fortinet W32/Injector.DNSD!tr
Ikarus VirTool.MSIL
AhnLab-V3 Trojan/Win32.Inject
AntiVir Worm/Rebhip.A.1
DrWeb Trojan.MulDrop3.41639
Comodo UnclassifiedMalware
Kaspersky Trojan-Dropper.Win32.Injector.dnsd
ClamAV Trojan.Agent-274880
eSafe Win32.Trojan
Avast Win32:Malware-gen
Symantec Trojan.Gen.2
NOD32 a variant of MSIL/Injector.WW
McAfee Generic Dropper!1n3
CAT-QuickHeal TrojanDropper.Injector.dnsd

SpyHunter Detects & Remove VirTool:MSIL/Injector.M

File System Details

VirTool:MSIL/Injector.M may create the following file(s):
# File Name MD5 Detections
1. csrcs.exe bc7963caa13c9b1234822aa77c220aa0 5
2. itlnfw32.dll 039ad5ad4cbb0e3f8cbaffa1ae1b7a1e 2
3. Svchost.exe 9bcba8a670922be4a8e2c7d89da154e3 1
4. Wolfteam All Weapons.exe de193ae0801af14e44b6c4ada2e6b6c9 1
5. Svchost.exe

Trending

Most Viewed

Loading...