ECJAVYCQ.EXE - Dangerous

What you should do about ECJAVYCQ.EXE:

Check Your PC Now
You should urgently check your PC and remove any malicious software including ECJAVYCQ.EXE as soon as possible. The free version of Prevx CSI will scan your PC for millions of spyware and malware infections in less than 2 minutes. Don't take the risk, check your PC now by clicking the green button.

Download Prevx CSI Now

Who Uses Prevx CSI?

Prevx has been detecting the threats that others miss since 2004.

More than 2,093,738 people have scanned with Prevx CSI and between them have checked 31.0 billion files. 69% of the PCs scanned had malware present.

What we know about ECJAVYCQ.EXE:

ECJAVYCQ.EXE

AUTOMATED MALWARE PROFILE, ANALYSIS, REMOVAL AND SIGNATURE INFORMATION:

DEFINITION OF: ECJAVYCQ.EXE

  • Safety Rating: Known Malware, do not run
  • Malware Family: Part of Malware group - Rootkit DialCall
  • Determination: Automatically determined using Prevx centralized heuristics
  • Malware Form: EXPLOIT
  • Protection: Prevx provides powerful security products that you can use to detect, remove and protect you from ECJAVYCQ.EXE and safeguard your PC against viruses, trojans, worms, spyware, rootkits and adware
  • Why risk having spyware on your PC when it takes less than 2 minutes to thoroughly check it with Prevx CSI? Click here to check your PC with Prevx CSI Now.
  • First seen: Nov 29 2006 (GMT)
  • Last seen: Nov 29 2006 (GMT)
  • File Size: 75,776 bytes
MALWARE ASSESSMENT: PREVX 4 AXES OF EVIL METHODOLOGY

1. COVERT ANALYSIS OF: ECJAVYCQ.EXE

  • File Names Used: 26
  • Paths Used: 6
  • Common File Name: ECJAVYCQ.EXE
  • Common Path: ?:\
  • Vendor Information: No Vendor details specified
  • ECJAVYCQ.EXE may use 26 or more path and file names, these are the most common:
  • 1 :%CACHE%\CONTENT.IE5\????????\ZQYEOY[1].TXT
  • 2 :%CACHE%\CONTENT.IE5\????????\ZQYEOY[2].TXT
  • 3 :?:\00003706.EXE
  • 4 :?:\A00000000
  • 5 :?:\ASNHC.EXE
  • 6 :?:\DC1.EXE
  • 7 :?:\DC2.EXE
  • 8 :?:\DC43.EXE
  • 9 :?:\DC7.EXE
  • 10:?:\DWKSX.EXE
  • 11:?:\ERUDLQ.EXE
  • 12:?:\FWVOR.EXE
  • 13:?:\IBKWW.EXE
  • 14:?:\LRPQQ.EXE
  • 15:?:\QSFH.EXE
  • File Name Structure: Normal
  • File and Path Structure: Suspicious, unusually high number of file and path combinations

2. RELATIONSHIP ANALYSIS OF: ECJAVYCQ.EXE

  • Malicious Objects Created: 1 objects
  • Malicious Creators: 2
  • Malware Run Keys: None
  • Self Persists:
  • Antivirus Detection: No third party antivirus detection observed
  • Anti-Spyware Detection: No third party anti-spyware detection observed

3. ACTIVITY ANALYSIS OF: ECJAVYCQ.EXE

  • The following behaviors have been observed for this object:
  • Installs programs.
  • Hijacks running processes.
  • Creates known malware.

4. PROPAGATION ANALYSIS OF: ECJAVYCQ.EXE

  • Malware Group Propagation Rate: Moderate (spreading)
  • Malware Group: Rootkit DialCall
  • Copyright Prevx Limited 2005, 2006

Copyright PrevxCopyright Prevx Ltd
Page Generated on May 17, 2008 2:33