Threat Information for "Trojan.Durvil"

Removal Top

StopSign will automatically remove this infection with a paid membership.

Summary Top
  • Name: Trojan.Durvil
  • Aliases:
  • Date Discovered: 2007-03-26
  • Protection Added: 2007-04-04
Description Top
-- Ease of Removal

1: Uses running processes
2: Runs as a BHO or shell extension
3: Consistently named
4: Consistent file contents
5: Creates new registry entries with consistent data

-- Privacy Risks/Security Changes

1: Opens backdoors

-- Damage/Intrusion/Annoyance

1: Creates new files

-- Propagation/Saturation

1: Installed by other infections
Technical Details Top
  • Added Directory/File:
    FilePath: %SYSTEMDIR%\durvil*.dll
  • Added Directory/File:
    FilePath: %SYSTEMDIR%\durvil*.exe
  • Added Registry Key:
    Key: HKLM\%BHOREG%\{40a2988e-c954-4dde-bd08-453191805bb9}
  • Added Registry Key:
    Key: HKCR\clsid\{40a2988e-c954-4dde-bd08-453191805bb9}
  • Added Registry Key:
    Key: HKLM\SOFTWARE\Classes\CLSID\{40a2988e-c954-4dde-bd08-453191805bb9}