Home / malwarePDF  

Trojan:WinNT/Umveet.gen!A


First posted on 03 December 2009.
Source: SecurityHome

Aliases :

Trojan:WinNT/Umveet.gen!A is also known as Trojan-GameThief.Win32.Magania.bzrg (Kaspersky), Trojan.Magania.VVJ (VirusBuster), Rootkit.OnlineGames.DG (BitDefender), Win32/PSW.OnLineGames.OMR (ESET), PWS-Mmorpg!fv (McAfee).

Explanation :

Trojan:WinNT/Umveet.gen!A is the generic detection for a rootkit component commonly used by some variants of the Win32/Taterf family.
Top

Trojan:WinNT/Umveet.gen!A is the generic detection for a rootkit component commonly used by some variants of the Win32/Taterf family. Trojan:WinNT/Umveet.gen!A helps retrieve the original addresses of the following functions, which are exported by the Windows kernel: DbgPrint
KeServiceDescriptorTable
RtlAnsiStringToUnicodeString
RtlFreeUnicodeString
RtlInitAnsiString
ZwReadFile
ZwQuerySystemInformation
ZwCreateFile
ZwClose

Analysis by Jireh Sanico

Last update 03 December 2009

 

TOP