Threat Database Trojans Mal/SillyFDC-A

Mal/SillyFDC-A

By Sumo3000 in Trojans

Threat Scorecard

Popularity Rank: 21,033
Threat Level: 90 % (High)
Infected Computers: 63
First Seen: September 20, 2011
Last Seen: July 20, 2026
OS(es) Affected: Windows

Mal/SillyFDC-A is a damaging Trojan which uses deceptive methods to access the infected computer system. Mal/SillyFDC-A poses as a genuine software program. Mal/SillyFDC-A adds its registry entry to run automatically every time you start a PC. Mal/SillyFDC-A propagates via malicious links and spam email attachments. Once installed, Mal/SillyFDC-A will open ports and attempt to connect to specified remote hosts in order to download and install additional malware threats. Mal/SillyFDC-A shows numerous pop-up ads and redirects the affected web browser to malicious websites. Delete Mal/SillyFDC-A as quickly as possible.

Aliases

12 security vendors flagged this file as malicious.

Antivirus Vendor Detection
AVG Worm/VB.BCLW
Fortinet W32/AutoRun.RPV!worm
Ikarus Virus.Win32.VB
Sophos Mal/SillyFDC-A
AntiVir TR/Crypt.CFI.Gen
Comodo UnclassifiedMalware
BitDefender Gen:Trojan.Heur.cm0@sjloD8TaC
Kaspersky HEUR:Trojan.Win32.Generic
Avast Win32:Agent-AKVZ [Trj]
Symantec Trojan.Gen.2
NOD32 a variant of Win32/AutoRun.VB.WY
McAfee Suspect-BQ!CFFCDF0493AF

SpyHunter Detects & Remove Mal/SillyFDC-A

File System Details

Mal/SillyFDC-A may create the following file(s):
# File Name MD5 Detections
1. Zydll.exe cffcdf0493af059bfe51ebe603b44924 1
2. %Windir%\InstallDir\Server.exe
3. %AppData%\Microsoft\Windows\FRl7SMU1AK2mAT.dat
4. Server.exe 4ed377e2cc3e84885ba85afc222245f0 0
More files

Registry Details

Mal/SillyFDC-A may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{SGL8XCQP-5QO3-M575-3U8N-IO33V1SSTA62}
HKEY_CURRENT_USER\Software\XtremeRAT
HKEY_CURRENT_USER\Software\FRl7SMU1AK2mAT

Analysis Report

General information

Family Name: Trojan.Sillydl.A
Signature status: No Signature

Known Samples

MD5: 04c2a7084cad004a75fdcdf187f70914
SHA1: 69fa038ab46f13c350d567632e1c922ca88b017e
SHA256: 611E88EE1A96D53F244897FB3050BCF0668C26DDC18BF00792DD55D9CC8F297C
File Size: 360.45 KB, 360448 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

File Traits

  • No Version Info
  • x86

Block Information

Total Blocks: 46
Potentially Malicious Blocks: 2
Whitelisted Blocks: 44
Unknown Blocks: 0

Visual Map

x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Agent.LJ
  • Agent.LS
  • Agent.LT
  • Sillydl.A