Home Malware Programs Trojans TrojanSpy:Win64/Ursnif.H

TrojanSpy:Win64/Ursnif.H

Posted: August 27, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 419
First Seen: August 27, 2012
OS(es) Affected: Windows

TrojanSpy:Win64/Ursnif.H is a rootkit Trojan that targets PCs with 64-bit Windows operating systems. TrojanSpy:Win64/Ursnif.H is difficult to detect and uninstall by many security tools. TrojanSpy:Win64/Ursnif.H can record a victim's personal information and transmit it to remote attackers. TrojanSpy:Win64/Ursnif.H records mouse clicks, logs keystrokes, and saves screen content of the corrupted machine in order to gather a victim's usernames and passwords. TrojanSpy:Win64/Ursnif.H reduces overall PC performance and leads to Internet connection problems.TrojanSpy:Win64/Ursnif.H is a rootkit Trojan that targets PCs with 64-bit Windows operating systems. TrojanSpy:Win64/Ursnif.H is difficult to detect and uninstall by many security tools. TrojanSpy:Win64/Ursnif.H can record a victim's personal information and transmit it to remote attackers. TrojanSpy:Win64/Ursnif.H records mouse clicks, logs keystrokes, and saves screen content of the corrupted machine in order to gather a victim's usernames and passwords. TrojanSpy:Win64/Ursnif.H reduces overall PC performance and leads to Internet connection problems.

Aliases

Generic27.CHMY [AVG]Trojan.Win32.Sasfis [Ikarus]Trojan/Win32.Sasfis [AhnLab-V3]Trojan/Win32.Sasfis.gen [Antiy-AVL]Trojan.Siggen3.58595 [DrWeb]TrojWare.Win32.TrojanDownloader.Murlo.~JH2 [Comodo]Gen:Variant.Zusy.3171 [BitDefender]Trojan.Win32.Sasfis.desw [Kaspersky]Win32:Malware-gen [Avast]Generic Trojan [Panda]PSW.Generic10.DKN [AVG]W64/Papras.G!tr.pws [Fortinet]Trojan-Spy.Win64 [Ikarus]Backdoor/Win64.Trojan [AhnLab-V3]TrojanSpy:Win64/Ursnif.H [Microsoft]
More aliases (28)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



usbniw32.dll File name: usbniw32.dll
Size: 38.4 KB (38400 bytes)
MD5: ba4581cc21144382dadac838bbae87c6
Detection count: 417
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: September 3, 2012
%ALLUSERSPROFILE%\autofmon64.dll File name: autofmon64.dll
Size: 93.69 KB (93696 bytes)
MD5: 1a9f5182fb359ca2df39d5b5c74da80f
Detection count: 91
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: August 27, 2012
Loading...