DSGen


· Overview ·
· Origins ·
· Distribution ·
· Operation ·
· Detection and Removal ·
· Research ·



Overview

Vendor Notes:

From the doc: 'With Oblivion DSGen you can easily generate dropper source code, and with a click of a button compile it with *lcc-win32. A dropper is simply a program that extracts and executes one or more files when executed. It's sorta like a binder, or joiner, but you gotta compile a dropper, so it's diffrent. They are less detectable thain a binder too.'

Alias:

Dropper Source Generator, Kit-DSGen [McAfee], Oblivion DSGen, Trj/W32.Oblivion.Drp [Panda], TrojanDropper.Win32.Oblivion [Kaspersky], virus construction tool [F-Prot]

Category:

Trojan Creation Tool: A program designed to create Trojans. Some of these tools merely wrap existing Trojans, to make them harder to detect. Others add a trojan to an existing product (such as RegEdit.exe), making it a Dropper.

Dropper: In viruses and trojans, the dropper is the part of the program that installs the hostile code onto the system.

Trojan: Any program with a hidden intent. Trojans are one of the leading causes of breaking into machines. If you pull down a program from a chat room, new group, or even from unsolicited e-mail, then the program is likely trojaned with some subversive purpose. The word Trojan can be used as a verb: To trojan a program is to add subversive functionality to an existing program. For example, a trojaned login program might be programmed to accept a certain password for any user's account that the hacker can use to log back into the system at any time. Rootkits often contain a suite of such trojaned programs.

Similar Pests:

Trojan Creation Tool · Dropper · Trojan

Origins

Author:

Stan

Group:

The Ratpack

By This Group:

Anal FTP ·

Date of Origin:

August, 2001

Distribution

Prevalence:

  • DSGen: 0.1%
  • More Info

    Clot Factor:

  • DSGen: < 1
  • The "Clot Factor" is a measure of how much a pest "gums up" a machine by adding registry entries, files, and directories. As more objects are placed in a machine, manual removal becomes more difficult and more error-prone.

    Countries Affected:

    In the past three months, we have received reports of DSGen in United States.

    Operation

    Storage Required:

  • DSGen: at least 73 KB
  • Detection and Removal

    Automatic Removal:

    PestPatrol detects this.

    PestPatrol removes this.



    Manual Removal:

    Follow these steps to remove DSGen from your machine. Begin by backing up your registry and your system, and/or setting a Restore Point, to prevent trouble if you make a mistake.
    Remove Files:

    Remove these files (if present) with Windows Explorer:

    Research

    File Analyses:

    More Info:

  • AllTheWeb, AltaVista, AOL Search, Ask Jeeves, Google, HotBot, Lycos, LookSmart, MSN, Yahoo!
  • Research By:

  • PestPatrol's Pest Research Center
  • Last Revised:

    April 02, 2005