1. Skip to navigation
  2. Skip to content
  3. Skip to secondary-content




Trojan-Dropper:W32/Agent.DKIT

Name : Trojan-Dropper:W32/Agent.DKIT
Category:Malware
Type:Trojan-Dropper
Platform:W32

Summary

A trojan that contains one or more malicious programs, which it will secretly install and execute.

Disinfection

Allow F-Secure Anti-Virus to disinfect the relevant files.

For more general information on disinfection, please see Removal Instructions.

Additional Details

Trojan-Dropper:W32/Agent.DKIT drops files onto the affected system, then deletes itself.


Execution

On execution, Agent.DKIt drop files into the Windows or system32 folders:

  •  %localappdata%\Windows Server\server.dat
  •  %localappdata%\Windows Server\admin.txt
  •  %windir%\system32\hlp.dat

Once these files are dropped, the trojan-dropper deletes itself from the system.


Registry Changes

During execution, the trojan-dropper creates the following mutexes: 

  •  Setup555
  •  Exists555