Packer: absent
Compilation date: 08.03.2023 20:25:22
SHA1 hash:
- 5ea768e5c44a65035dbdac66d12ab68a94361962 (recovery.exe)
Description
A trojan application written in C++ and designed to run on 64-bit Microsoft Windows operating systems. Its primary function is to inject a Trojan.Clipper.231 malicious app into one of the system processes.
Operating routine
Trojan.Inject4.57873 is launched on targeted computers by a Trojan.MulDrop22.7578 malicious dropper. Using the Process Hollowing technique, the Trojan.Inject4.57873 injects Trojan.Clipper.231, located in M:\\EFI\\Microsoft\\Boot\\kd_08_5e78.dll, into the %WINDIR%\\System32\\Lsaiso.exe system process.
More details on Trojan.MulDrop22.7578
More details on Trojan.Clipper.231