Home Malware Programs Trojans Downloader.Renos.PT

Downloader.Renos.PT

Posted: May 20, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 1,298
First Seen: May 20, 2011
Last Seen: January 23, 2022
OS(es) Affected: Windows

Aliases

Generic23.CDXF [AVG]Win-Trojan/Mdob.290816.D [AhnLab-V3]Trojan/Win32.FakeAV.gen [Antiy-AVL]Win32/FakeAV.TXI [eTrust-Vet]TR/Dldr.Renos.ptlf [AntiVir]Trojan.Siggen2.58714 [DrWeb]Troj/FakeAV-EIK [Sophos]Trojan.Generic.KDV.302026 [BitDefender]Trojan.Win32.FakeAV.eciu [Kaspersky]Trojan.FakeAV-7856 [ClamAV]Win32:Renos-BDA [Trj] [Avast]W32/FakeAlert.FY.gen!Eldorado [F-Prot]Trojan.FakeAV.eciu [CAT-QuickHeal]Trj/Clicker.ATQ [Panda]Downloader.Generic11.BGVA [AVG]
More aliases (378)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%TEMP%\Jcm.exe File name: Jcm.exe
Size: 134.14 KB (134144 bytes)
MD5: 524c4a350dc66ed1fd9b9d3c7d38676b
Detection count: 778
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: May 20, 2011
%WINDIR%\TEMP\Pbr.exe File name: Pbr.exe
Size: 138.24 KB (138240 bytes)
MD5: 36f91f0203e896a7ab44c21eb393fc0d
Detection count: 194
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: August 1, 2011
s\Opstarten\cryptappaction.exe File name: cryptappaction.exe
Size: 149.5 KB (149504 bytes)
MD5: e9c4bdce7af79c4182b3fc348632f4d5
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Path: s\Opstarten
Group: Malware file
Last Updated: May 23, 2011
%WINDIR%\Dzisoa.exe File name: Dzisoa.exe
Size: 290.81 KB (290816 bytes)
MD5: 25c4bf6c8f86836d5e3f0baa9df27c1f
Detection count: 51
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: March 13, 2012
C:\Documents and Settings\<username>\Documenti\Download\***s Rogue Pack\***'s Rogue Pack\avinst_2004_gh8_av8.exe File name: avinst_2004_gh8_av8.exe
Size: 185.85 KB (185856 bytes)
MD5: 9cde081edda7bb53e9920a92b4d9e6f8
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: C:\Documents and Settings\<username>\Documenti\Download\***s Rogue Pack\***'s Rogue Pack\avinst_2004_gh8_av8.exe
Group: Malware file
Last Updated: January 23, 2022
%TEMP%\Djh.exe File name: Djh.exe
Size: 132.6 KB (132608 bytes)
MD5: 97a1e63d7f9cf75659f2f4a2c038fc36
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: June 22, 2011
%WINDIR%\TEMP\Ax1.exe File name: Ax1.exe
Size: 154.11 KB (154112 bytes)
MD5: 940f647564fcbcd5270484010bd4adad
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: June 6, 2011
%WINDIR%\TEMP\Ax0.exe File name: Ax0.exe
Size: 155.64 KB (155648 bytes)
MD5: d9b0c44176d47e8dd510cad5f5246d87
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: June 6, 2011
%WINDIR%\Rqanoa.exe File name: Rqanoa.exe
Size: 133.12 KB (133120 bytes)
MD5: d4abb00e94441f66338675e8946be913
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: August 30, 2011
%WINDIR%\system32\QWKWTS\SSX.exe File name: SSX.exe
Size: 1.57 MB (1572864 bytes)
MD5: 9ab9b7b74790b7bb2798dd2b26f4a913
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32\QWKWTS
Group: Malware file
Last Updated: March 6, 2020
%WINDIR%\TEMP\Ehl.exe File name: Ehl.exe
Size: 160.25 KB (160256 bytes)
MD5: 38baf356655662d71876f8ae74dc26fd
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: August 1, 2011
%WINDIR%\TEMP\Ehk.exe File name: Ehk.exe
Size: 151.04 KB (151040 bytes)
MD5: 32b1ac4d7039ca8b68de79da1a9c44c1
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: August 1, 2011
%TEMP%\Zbg.exe File name: Zbg.exe
Size: 114.68 KB (114688 bytes)
MD5: 8edf5181018116055e8ee5bb70ed7970
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: June 2, 2011
%TEMP%\Cj1.exe File name: Cj1.exe
Size: 142.33 KB (142336 bytes)
MD5: c96c25f5575523de2c6c0ca18e76cac5
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: June 28, 2011
%TEMP%\Cj1.exe File name: Cj1.exe
Size: 170.49 KB (170496 bytes)
MD5: 1f3cdf29077ca321252a133e167e6304
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: June 28, 2011
%WINDIR%\TEMP\Xgi.exe File name: Xgi.exe
Size: 254.46 KB (254464 bytes)
MD5: 7dfdffb1061b3bf23919a01ec717583e
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: August 25, 2011
%WINDIR%\TEMP\Sxs.exe File name: Sxs.exe
Size: 114.68 KB (114688 bytes)
MD5: b25f2cf09e3042d4b00d6e473cb87761
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: August 15, 2011
%WINDIR%\TEMP\Yss.exe File name: Yss.exe
Size: 229.88 KB (229888 bytes)
MD5: 58ca788c8d05c69aebdfe6ce4042bea7
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: February 13, 2012
Loading...