Threat Information for "Trojan.Durvil"
| Description | Top |
-- Ease of Removal 1: Uses running processes 2: Runs as a BHO or shell extension 3: Consistently named 4: Consistent file contents 5: Creates new registry entries with consistent data -- Privacy Risks/Security Changes 1: Opens backdoors -- Damage/Intrusion/Annoyance 1: Creates new files -- Propagation/Saturation 1: Installed by other infections
| Technical Details | Top |
- Added Directory/File:
FilePath: %SYSTEMDIR%\durvil*.dll - Added Directory/File:
FilePath: %SYSTEMDIR%\durvil*.exe - Added Registry Key:
Key: HKLM\%BHOREG%\{40a2988e-c954-4dde-bd08-453191805bb9} - Added Registry Key:
Key: HKCR\clsid\{40a2988e-c954-4dde-bd08-453191805bb9} - Added Registry Key:
Key: HKLM\SOFTWARE\Classes\CLSID\{40a2988e-c954-4dde-bd08-453191805bb9}

