Home Malware Programs Trojans Trojan.Sefnit.AA

Trojan.Sefnit.AA

Posted: November 21, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 649
First Seen: November 21, 2011
OS(es) Affected: Windows

Aliases

Trojan.Click2.23054 [DrWeb]Trojan.Click2.45318 [DrWeb]Trojan.Win32.Sefnit.b [Kaspersky]Trojan.Sefnit.b [CAT-QuickHeal]Trojan.Sefnit!gen4 [Symantec]TR/Kazy.43653.402 [AntiVir]Gen:Variant.Kazy.44199 [BitDefender]W32/Genome.VA!tr [Fortinet]Trojan/Win32.Genome.gen [Antiy-AVL]Trojan.Win32.Genome.aarxq [Kaspersky]TR/Sefnit.AA.222 [AntiVir]W32/Sefnit.BZ [Fortinet]TR/Sefnit.AA.543 [AntiVir]Trojan.Win32.Genome.aalge [Kaspersky]Win32/Sefnit.BZ [NOD32]
More aliases (126)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%LOCALAPPDATA%\SystemMainCmds\CatDBMapInterval.dll File name: CatDBMapInterval.dll
Size: 151.55 KB (151552 bytes)
MD5: a2a4217c7bf336ac2dc5d766248c3125
Detection count: 96
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\SystemMainCmds
Group: Malware file
Last Updated: December 8, 2011
%USERPROFILE%\Local Settings\Application Data\BluetoothPaddll32\msEventCmds.dll File name: msEventCmds.dll
Size: 159.74 KB (159744 bytes)
MD5: 1bdc0812567498891850a9d4720b1780
Detection count: 86
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\Local Settings\Application Data\BluetoothPaddll32
Group: Malware file
Last Updated: November 21, 2011
%LOCALAPPDATA%\NativeMobilenet\lanMainman.dll File name: lanMainman.dll
Size: 163.84 KB (163840 bytes)
MD5: 039cdd23b729f8de7f216f65794293ec
Detection count: 74
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\NativeMobilenet
Group: Malware file
Last Updated: March 12, 2013
%APPDATA%\8C69F\lvvm.exe File name: lvvm.exe
Size: 189.44 KB (189440 bytes)
MD5: d3e864edf18ae44d324c6baae6701ce9
Detection count: 59
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\8C69F
Group: Malware file
Last Updated: November 23, 2011
%USERPROFILE%\Local Settings\Application Data\tapiHelpNetM\isaMouseSvcs.dll File name: isaMouseSvcs.dll
Size: 172.03 KB (172032 bytes)
MD5: 3f34a50a89d9237c8c74ff85b5bf9af6
Detection count: 52
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\Local Settings\Application Data\tapiHelpNetM
Group: Malware file
Last Updated: December 23, 2011
%SystemDrive%\Documents and Settings\TimothyZ\Local Settings\Application Data\winNetLite\AppmapWan.dll File name: AppmapWan.dll
Size: 155.64 KB (155648 bytes)
MD5: a14881f038e1e8ed657233363566b647
Detection count: 47
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Documents and Settings\TimothyZ\Local Settings\Application Data\winNetLite
Group: Malware file
Last Updated: November 24, 2011
%SystemDrive%\Users\<username>\AppData\Local\dbobjOffice\EapcfgRpl.dll File name: EapcfgRpl.dll
Size: 180.22 KB (180224 bytes)
MD5: 6e3b14136ad362e6219badbe70d4e7a9
Detection count: 41
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Users\<username>\AppData\Local\dbobjOffice
Group: Malware file
Last Updated: December 5, 2011
%ALLUSERSPROFILE%\Application Data\xbLhfdIDeqvrfy.exe File name: xbLhfdIDeqvrfy.exe
Size: 445.06 KB (445064 bytes)
MD5: 3fc7206da1ed5cbae39a967f426a7a64
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Application Data
Group: Malware file
Last Updated: December 5, 2011
%LOCALAPPDATA%\compatCommsRpl\SysNetTray.dll File name: SysNetTray.dll
Size: 151.55 KB (151552 bytes)
MD5: d379c96412e97f71ae750a87a6e351e4
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\compatCommsRpl
Group: Malware file
Last Updated: November 21, 2011
%LOCALAPPDATA%\acxMainHelper\BthPad3xx.dll File name: BthPad3xx.dll
Size: 176.12 KB (176128 bytes)
MD5: 5b5215c537158d29e6d837cea9a69a97
Detection count: 21
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\acxMainHelper
Group: Malware file
Last Updated: September 19, 2012
%LOCALAPPDATA%\usbWebdrv\WdCommsAgent.dll File name: WdCommsAgent.dll
Size: 180.22 KB (180224 bytes)
MD5: 6d4c0119ab5a8194c42714889efd5be9
Detection count: 16
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\usbWebdrv
Group: Malware file
Last Updated: January 11, 2012
%LOCALAPPDATA%\AgereMobile.NET\oleMouseapi.dll File name: oleMouseapi.dll
Size: 176.12 KB (176128 bytes)
MD5: 8f83cdce0afb4c0fc7d433ba1a965cc7
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\AgereMobile.NET
Group: Malware file
Last Updated: November 24, 2011
%USERPROFILE%\Local Settings\Application Data\HandlerMouseNetM\Appmapplugin.dll File name: Appmapplugin.dll
Size: 180.22 KB (180224 bytes)
MD5: 46d616d1282d8eb90c8e7e36ed9a52ff
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\Local Settings\Application Data\HandlerMouseNetM
Group: Malware file
Last Updated: December 8, 2011
%LOCALAPPDATA%\MSNobjhid\isaMobileUsb.dll File name: isaMobileUsb.dll
Size: 172.03 KB (172032 bytes)
MD5: 134b453f7b46cf176d33f9ab63161afa
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\MSNobjhid
Group: Malware file
Last Updated: February 22, 2013
%USERPROFILE%\Local Settings\Application Data\Directmap.NET\Agerenetvga.dll File name: Agerenetvga.dll
Size: 167.93 KB (167936 bytes)
MD5: 81138f5e3a6f78f077df8cd483769136
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\Local Settings\Application Data\Directmap.NET
Group: Malware file
Last Updated: February 20, 2012
%LOCALAPPDATA%\DfrgPathlog\SmartHelpdll32.dll File name: SmartHelpdll32.dll
Size: 184.32 KB (184320 bytes)
MD5: ea2c30c723cf3bf4229db6b0aec2d45b
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\DfrgPathlog
Group: Malware file
Last Updated: December 5, 2011
%USERPROFILE%\Local Settings\Application Data\Securityobjaudio\DfrgHelpTrust.dll File name: DfrgHelpTrust.dll
Size: 176.12 KB (176128 bytes)
MD5: 621562bcb10be0cd4c83d65997c08f56
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\Local Settings\Application Data\Securityobjaudio
Group: Malware file
Last Updated: November 28, 2011
%USERPROFILE%\Local Settings\Application Data\Nativenetcdrom\advNetNetM.dll File name: advNetNetM.dll
Size: 151.55 KB (151552 bytes)
MD5: 56dd224321262006aa794dfe9849b7a1
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\Local Settings\Application Data\Nativenetcdrom
Group: Malware file
Last Updated: December 6, 2011
Loading...