Home Malware Programs Trojans MonitoringTool:Win32/Orbond.A

MonitoringTool:Win32/Orbond.A

Posted: June 29, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 35
First Seen: June 29, 2011
OS(es) Affected: Windows

MonitoringTool:Win32/Orbond.A is a keylogger Trojan that is a serious threat to your PC system's security and privacy. MonitoringTool:Win32/Orbond.A can destroy the affected computer system and steal personal information from its victim, thus, violating the PC user's privacy. MonitoringTool:Win32/Orbond.A is able to record your data by keylogging. MonitoringTool:Win32/Orbond.A keeps track of every single keystroke a computer user makes on a keyboard, storing the recorded data, such information as your banking information, somewhere in your PC system. MonitoringTool:Win32/Orbond.A also displays fake pop-up alert messages. MonitoringTool:Win32/Orbond.A can download and install additional malware threats. Uninstall MonitoringTool:Win32/Orbond.A to protect your security and privacy.

Aliases

Malware/Win32.Generic [AhnLab-V3]Gen:Heur.MSIL.Krypt.2 [BitDefender]Win32:Dropper-gen [Avast]Artemis!87D0F76B009E [McAfee]Trj/CI.A [Panda]PSW.Agent.AMEY [AVG]W32/Agent.BQKU!tr [Fortinet]Gen.Trojan.Heur [Ikarus]Spyware/Win32.Agent [AhnLab-V3]TR/Spy.102400.311 [AntiVir]Sus/Behav-1015 [Sophos]Gen:Trojan.Heur.LP.gu8@aySEAoeb [BitDefender]Trojan-Spy.Win32.Agent.bqku [Kaspersky]Win32:Hooker-AL [Avast]Generic Trojan [Panda]
More aliases (96)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\Anwendungsdaten\STiHfQsWqJ.exe File name: STiHfQsWqJ.exe
Size: 493.56 KB (493568 bytes)
MD5: 8456881cf315af2f4804d19b3d746c52
Detection count: 83
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Anwendungsdaten
Group: Malware file
Last Updated: June 30, 2011
%APPDATA%\lixx.exe File name: lixx.exe
Size: 36.86 KB (36864 bytes)
MD5: 7014addaf1431db865df7cd8db658ca3
Detection count: 53
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: June 30, 2011
%TEMP%\MS2011Helper.DLL File name: MS2011Helper.DLL
Size: 102.4 KB (102400 bytes)
MD5: 1bb86c2366ba7549c3e018bb4723287f
Detection count: 31
File type: Dynamic link library
Mime Type: unknown/DLL
Path: %TEMP%
Group: Malware file
Last Updated: July 1, 2011
%ALLUSERSPROFILE%\Application Data\QuestScan\questscan143.exe File name: questscan143.exe
Size: 40.96 KB (40960 bytes)
MD5: e19026abcff41c3f5985b8bcdc45145f
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Application Data\QuestScan
Group: Malware file
Last Updated: June 30, 2011
%TEMP%\Explorer\ETPkeygen.exe File name: ETPkeygen.exe
Size: 57.34 KB (57344 bytes)
MD5: b6a2a75f5a26e06ae7f825dd0dad2761
Detection count: 13
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\Explorer
Group: Malware file
Last Updated: June 29, 2011
%PROGRAMFILES%\Sanook! QQ\QQ\QQ.EXE File name: QQ.EXE
Size: 1.2 MB (1208357 bytes)
MD5: b441c4735b37f88642f208a70d399be4
Detection count: 9
File type: Executable File
Mime Type: unknown/EXE
Path: %PROGRAMFILES%\Sanook! QQ\QQ
Group: Malware file
Last Updated: June 30, 2011
Loading...