Home Malware Programs Trojans Spy.Babonock.A

Spy.Babonock.A

Posted: November 3, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 3,750
First Seen: November 3, 2011
Last Seen: October 14, 2021
OS(es) Affected: Windows

Aliases

Generic3_c.CFSW [AVG]TR/Spy.Babonock.A.2 [AntiVir]Trojan.Siggen2.26343 [DrWeb]Win32:Rootkit-gen [Rtk] [Avast]Generic PWS.y!djj [McAfee]Worm/Autoit.ANUZ [AVG]W32/Agent.BQDE!tr [Fortinet]Win-Trojan/Agent.680603 [AhnLab-V3]TSPY_BABONOCK.A [TrendMicro]TR/Spy.Babonock.A.3 [AntiVir]Trojan.Siggen2.26445 [DrWeb]Mal/Babonock-A [Sophos]Trojan-Spy.Win32.Agent.bqde [Kaspersky]Trojan.Babonock [ClamAV]AutoIt:Agent-DG [Trj] [Avast]
More aliases (114)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe File name: rundll32.exe
Size: 680.39 KB (680393 bytes)
MD5: 8b5c2cbf7d89be0a6eb66ecc29d9f5fd
Detection count: 696
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe
Group: Malware file
Last Updated: December 30, 2022
C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe File name: rundll32.exe
Size: 680.51 KB (680511 bytes)
MD5: 2eb5d76180ce7b3241b281fa79ab3483
Detection count: 649
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe
Group: Malware file
Last Updated: October 16, 2023
C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe File name: rundll32.exe
Size: 680.45 KB (680451 bytes)
MD5: 8ca8216260b4f5e0d6e1132e49d1d25a
Detection count: 532
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe
Group: Malware file
Last Updated: July 14, 2023
C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe File name: rundll32.exe
Size: 680.6 KB (680603 bytes)
MD5: fe9261575638dec5742ddfba5b5fb19c
Detection count: 494
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe
Group: Malware file
Last Updated: June 27, 2023
C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe File name: rundll32.exe
Size: 680.45 KB (680455 bytes)
MD5: 9f4ad2e1a21330ed5442d666e37a3b47
Detection count: 445
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe
Group: Malware file
Last Updated: February 2, 2023
C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe File name: rundll32.exe
Size: 681.47 KB (681475 bytes)
MD5: 2145d2a363368d944b4773fa130447a5
Detection count: 108
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe
Group: Malware file
Last Updated: November 24, 2022
C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe File name: rundll32.exe
Size: 680.6 KB (680605 bytes)
MD5: 67a37f128ca665f88c0e0eb5e7259251
Detection count: 105
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Office\rundll32.exe
Group: Malware file
Last Updated: August 26, 2022
%TEMP%\jucheck.exe File name: jucheck.exe
Size: 512.51 KB (512512 bytes)
MD5: 721a2d9a22049b1ab0165202ecf929d4
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: November 4, 2011
%USERPROFILE%\Documents\task.exe File name: task.exe
Size: 547.64 KB (547649 bytes)
MD5: c26a52ac567630e0255a7a336db9e833
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Documents
Group: Malware file
Last Updated: November 8, 2011
Loading...