Home Malware Programs Trojans Trojan.Downloader.Tonick.gen

Trojan.Downloader.Tonick.gen

Posted: January 2, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 590
First Seen: January 2, 2011
Last Seen: July 28, 2020
OS(es) Affected: Windows

Aliases

W32/AutoRun.RPV!worm [Fortinet]Artemis!BAEE89765436 [McAfee]BackDoor.Kaiten.origin [DrWeb]Artemis!BB0E3A8822C9 [McAfee]Trojan.DownLoader1.45593 [DrWeb]Trojan-Downloader:W32/Agent.DQIB [F-Secure]Artemis!5287B802DE92 [McAfee]Adload_r.AKW [AVG]Trojan.Win32.Chepdu.t (v) [Sunbelt]Gen:Trojan.Heur.LP.pu8@aq8Gwzki [BitDefender]Trojan.Chepdu.R [CAT-QuickHeal]Cryptic.BTR [AVG]Artemis!5482EAC9B620 [McAfee-GW-Edition]Trojan.FakeAV.3252 [DrWeb]Gen:Variant.Kazy.7102 [BitDefender]
More aliases (231)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\LBSYdYrDlalNvk.exe File name: LBSYdYrDlalNvk.exe
Size: 467.45 KB (467456 bytes)
MD5: 5117d16953a2ffa87964a4ec15e5dd3b
Detection count: 272
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: January 5, 2011
%WINDIR%\system32\yc72125.dll File name: yc72125.dll
Size: 245.76 KB (245760 bytes)
MD5: 2c2a2284be6e2910706aa124cf32ddf7
Detection count: 117
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 5, 2011
%PROGRAMFILES%\Application\firefox.exe File name: firefox.exe
Size: 571.9 KB (571904 bytes)
MD5: 6a7f25682c44b4e3a5bd84b2e58fc1d3
Detection count: 81
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Application
Group: Malware file
Last Updated: January 2, 2011
%ALLUSERSPROFILE%\api-ms-win-core-file-l1-1-032.dll File name: api-ms-win-core-file-l1-1-032.dll
Size: 250.36 KB (250368 bytes)
MD5: 3086dd132138ca00555c9ffbdd0a91e0
Detection count: 76
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: January 2, 2011
%ALLUSERSPROFILE%\Dati applicazioni\b5846d\SMb58_2129.exe File name: SMb58_2129.exe
Size: 3.57 MB (3579904 bytes)
MD5: 67789167714e5ba8c7a92ab7e6e09138
Detection count: 75
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Dati applicazioni\b5846d
Group: Malware file
Last Updated: January 2, 2011
%WINDIR%\SoftwareDistribution\DataStore\Logs\dak32.sys File name: dak32.sys
Size: 29.69 KB (29696 bytes)
MD5: 014f006b9fb6a87669caf46f80fc6b3f
Detection count: 52
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\SoftwareDistribution\DataStore\Logs
Group: Malware file
Last Updated: May 16, 2019
%PROGRAMFILES%\Google\GoogleToolbars1.dll File name: GoogleToolbars1.dll
Size: 392.19 KB (392192 bytes)
MD5: ad55b28e5f0a1428abd1213528b230d1
Detection count: 16
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Google
Group: Malware file
Last Updated: January 2, 2011
%USERPROFILE%\Local Settings\Application Data\acxCommsdsc\xpPathCmds.dll File name: xpPathCmds.dll
Size: 81.92 KB (81920 bytes)
MD5: bacfb2b93759e67dce6972a9e9b5b074
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\Local Settings\Application Data\acxCommsdsc
Group: Malware file
Last Updated: January 2, 2011
%TEMP%\tmp3.dll File name: tmp3.dll
Size: 348.16 KB (348160 bytes)
MD5: 8f791b9038a871eaaabf83ee87356713
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %TEMP%
Group: Malware file
Last Updated: January 2, 2011
%APPDATA%\trusteerhelp\spuninst.exe File name: spuninst.exe
Size: 110.59 KB (110592 bytes)
MD5: e344dfae28acb44a6e9e05ccbd4ece14
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\trusteerhelp
Group: Malware file
Last Updated: January 2, 2011
%TEMP%\roamsvc.exe File name: roamsvc.exe
Size: 61.61 KB (61615 bytes)
MD5: f2306c764ca491e27aeb96579b4821e6
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: January 2, 2011
%APPDATA%\protect.exe File name: protect.exe
Size: 2.52 MB (2524160 bytes)
MD5: 4f0ad8a4812ebb5eddbf42acecb14b59
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: January 2, 2011
C:\Users\<username>\AppData\Local\Temp\svchost.exe File name: svchost.exe
Size: 158.6 KB (158604 bytes)
MD5: 5287b802de9244a7065e448ea99a8f7d
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\Temp\svchost.exe
Group: Malware file
Last Updated: August 17, 2022
%WINDIR%\system32\nkqzk.exe File name: nkqzk.exe
Size: 477.18 KB (477184 bytes)
MD5: 86f860e04b0afc1ab020e62a456818d6
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 2, 2011
%WINDIR%\wiapw40.dll File name: wiapw40.dll
Size: 98.3 KB (98304 bytes)
MD5: b5a0e6b073654114d84f4897ae578b2e
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%
Group: Malware file
Last Updated: January 2, 2011
%WINDIR%\oltrdvc.dll File name: oltrdvc.dll
Size: 94.2 KB (94208 bytes)
MD5: b810868c9f6b3f75a08a23f90794ad1a
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%
Group: Malware file
Last Updated: January 2, 2011
%LOCALAPPDATA%\3802557469.exe File name: 3802557469.exe
Size: 984.06 KB (984064 bytes)
MD5: 29f40fd96ae7ab0bba7364dd1eb40b21
Detection count: 2
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: January 5, 2011
Loading...