Home Malware Programs Trojans Trojan.Reveton.F

Trojan.Reveton.F

Posted: September 3, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 1,394
First Seen: September 3, 2012
Last Seen: July 3, 2021
OS(es) Affected: Windows

Aliases

Generic30.ABRK [AVG]TR/Drop.Reveton.F [AntiVir]Gen:Variant.Kazy.105810 [BitDefender]Generic_s.TU [AVG]TR/Drop.Injector.fyja [AntiVir]Troj/Winlock-G [Sophos]Trojan-Dropper.Win32.Injector.fyim [Kaspersky]Win32:Reveton-FO [Trj] [Avast]Generic30.JGW [AVG]W32/Swisyn.CPKX!tr [Fortinet]TR/RevetonFL.A [AntiVir]Trojan.Siggen4.30665 [DrWeb]Mal/EncPk-AIS [Sophos]Trojan.Generic.7968887 [BitDefender]Trojan.Win32.Swisyn.cpkx [Kaspersky]
More aliases (1193)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SystemDrive%\Documents and Settings\User.MAKIRA\Local Settings\Temp\wlsidten.dll File name: wlsidten.dll
Size: 249.85 KB (249856 bytes)
MD5: 59146393420652a42622f5eb5e076c53
Detection count: 91
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Documents and Settings\User.MAKIRA\Local Settings\Temp
Group: Malware file
Last Updated: November 14, 2012
%USERPROFILE%\0.75324418272234.tmp File name: 0.75324418272234.tmp
Size: 185.3 KB (185304 bytes)
MD5: 015b8aa19937134be37bb36fa8aa4787
Detection count: 91
File type: Temporary File
Mime Type: unknown/tmp
Path: %USERPROFILE%
Group: Malware file
Last Updated: January 8, 2013
%SystemDrive%\Users\<username>\AppData\Local\Temp\wlsidten.dll File name: wlsidten.dll
Size: 233.47 KB (233472 bytes)
MD5: 2c2dde357e47cad1f5c7e101fb31dc3c
Detection count: 54
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Users\<username>\AppData\Local\Temp
Group: Malware file
Last Updated: November 26, 2012
%SystemDrive%\Users\<username>\AppData\Local\Temp\wgsdgsdgdsgsd.exe File name: wgsdgsdgdsgsd.exe
Size: 231.42 KB (231424 bytes)
MD5: 2fe891deb472180603aa3c3dfeccf7a0
Detection count: 49
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Local\Temp
Group: Malware file
Last Updated: November 12, 2012
%SystemDrive%\Users\<username>\AppData\Local\Temp\wgsdgsdgdsgsd.exe File name: wgsdgsdgdsgsd.exe
Size: 162.39 KB (162392 bytes)
MD5: cf8ec1875a80e0ee9118b82a4085a023
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Local\Temp
Group: Malware file
Last Updated: December 20, 2012
%SystemDrive%\Users\<username>\AppData\Local\Temp\wgsdgsdgdsgsd.exe File name: wgsdgsdgdsgsd.exe
Size: 136.66 KB (136664 bytes)
MD5: 89402b432624d41a312be1c73a452bbd
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Local\Temp
Group: Malware file
Last Updated: November 22, 2012
%SystemDrive%\Users\<username>\AppData\Local\Temp\wgsdgsdgdsgsd.exe File name: wgsdgsdgdsgsd.exe
Size: 241.08 KB (241088 bytes)
MD5: 3a625c89d960d48ea3516fda3a330955
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Local\Temp
Group: Malware file
Last Updated: January 21, 2013
%USERPROFILE% Kaiser\AppData\Local\Temp\wgsdgsdgdsgsd.exe File name: wgsdgsdgdsgsd.exe
Size: 227.26 KB (227264 bytes)
MD5: 2d83c7d37e34471e040c4235efe26813
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE% Kaiser\AppData\Local\Temp
Group: Malware file
Last Updated: January 14, 2013
%SystemDrive%\Documents and Settings\Arnold\Local Settings\Temp\wlsidten.dll File name: wlsidten.dll
Size: 258.04 KB (258048 bytes)
MD5: ee606693e2afc2775920929da8d3eb4c
Detection count: 15
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Documents and Settings\Arnold\Local Settings\Temp
Group: Malware file
Last Updated: November 19, 2012
%USERPROFILE%s\wgsdgsdgdsgsd.exe File name: wgsdgsdgdsgsd.exe
Size: 163.84 KB (163840 bytes)
MD5: 2033a487b69e221e1940563538ad9f4f
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%s
Group: Malware file
Last Updated: January 5, 2013
%SystemDrive%\Users\<username>\AppData\Local\Temp\wgsdgsdgdsgsd.exe File name: wgsdgsdgdsgsd.exe
Size: 151 KB (151000 bytes)
MD5: 48e30a1f6f61a0602c66cc1781b167c7
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Local\Temp
Group: Malware file
Last Updated: November 28, 2012
%SystemDrive%\Documents and Settings\qosmio1\Local Settings\Temp\wpbt0.dll File name: wpbt0.dll
Size: 249.85 KB (249856 bytes)
MD5: baa4ac35acc791d56f7430bb59801e9a
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Documents and Settings\qosmio1\Local Settings\Temp
Group: Malware file
Last Updated: January 29, 2013
%USERPROFILE%\0.9640741931733952.tmp File name: 0.9640741931733952.tmp
Size: 138.2 KB (138200 bytes)
MD5: 4ab5e2edb55a876d00643107f9bf85d9
Detection count: 7
File type: Temporary File
Mime Type: unknown/tmp
Path: %USERPROFILE%
Group: Malware file
Last Updated: December 17, 2012
%SystemDrive%\Users\<username>\AppData\Local\Temp\wgsdgsdgdsgsd.exe File name: wgsdgsdgdsgsd.exe
Size: 100.86 KB (100864 bytes)
MD5: cb131f49369030ecbb8121a40122a00c
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Local\Temp
Group: Malware file
Last Updated: November 12, 2012
%SystemDrive%\Users\<username>\AppData\Local\Temp\wgsdgsdgdsgsd.exe File name: wgsdgsdgdsgsd.exe
Size: 147.41 KB (147416 bytes)
MD5: 32743c7963504fa84e913513726e60c1
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Local\Temp
Group: Malware file
Last Updated: December 3, 2012
%USERPROFILE%\0.9043946102160106.tmp File name: 0.9043946102160106.tmp
Size: 241.66 KB (241664 bytes)
MD5: 05fecab7f33ecf30ce451f5da76d1d5c
Detection count: 5
File type: Temporary File
Mime Type: unknown/tmp
Path: %USERPROFILE%
Group: Malware file
Last Updated: January 28, 2013
%SystemDrive%\Users\<username>\wgsdgsdgdsgsd.exe File name: wgsdgsdgdsgsd.exe
Size: 278.52 KB (278528 bytes)
MD5: a080e1484e03501f7bbf73e8fe1bcec4
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\Josha Schut
Group: Malware file
Last Updated: January 28, 2013
%SystemDrive%\Users\<username>\AppData\Local\Temp\wlsidten.dll File name: wlsidten.dll
Size: 126.49 KB (126496 bytes)
MD5: 6841a507fe3dd1a18c792737fdb14f86
Detection count: 2
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Users\<username>\AppData\Local\Temp
Group: Malware file
Last Updated: January 5, 2013

More files
Loading...