Home Malware Programs Viruses Trojan.Win32.Cosmu.zny

Trojan.Win32.Cosmu.zny

Posted: August 20, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 2,075
First Seen: December 6, 2010
Last Seen: April 21, 2022
OS(es) Affected: Windows

Trojan.Win32.Cosmu.zny is another malicious Trojan horse that represents a security risk for a compromised PC system or a network environment. Trojan.Win32.Cosmu.zny should not be taken lightly and contains characteristics of a severe security risk. Trojan.Win32.Cosmu.zny penetrates the system without the user's knowledge or permission and easily contacts a remote server to download other harmful parasites onto the infected computer. Symptoms may include your computer screen flipping upside down or inverting and documents or messages printing on your printer by themselves. For the safety of your computer, Trojan.Win32.Cosmu.zny should be removed immediately.

Aliases

probably a variant of Win32/Injector.CBB [NOD32]Artemis!B78A1905CDDD [McAfee]Trojan.Win32.Ircbrute [Ikarus]a variant of Win32/AutoRun.VB.LO [NOD32]Trojan.Win32.FraudPack.atla [Kaspersky]Trojan.Fakealert.14374 [DrWeb]Artemis!A1FDCCDCB8F9 [McAfee+Artemis]Generic.dx!rwj [McAfee]Win32.HLLW.Autoruner.18776 [DrWeb]Trojan.Generic.KD.7603 [BitDefender]Generic Trojan [Panda]Worm/Generic.AAUN [AVG]Win32.SuspectCrc [Ikarus]Win32.SuspectCrc!IK [a-squared]Trojan/Win32.Cosmu.gen [Antiy-AVL]
More aliases (631)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\systeem.exe File name: systeem.exe
Size: 541.22 KB (541227 bytes)
MD5: 1b6b57c8185a6e1a717c6ca1ae734616
Detection count: 90
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 7, 2010
%APPDATA%\windll32\windll.exe File name: windll.exe
Size: 770.56 KB (770560 bytes)
MD5: 10c4d56224bb4e344742b3bcbe964a5c
Detection count: 82
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\windll32
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\Hyden.dll.exe File name: Hyden.dll.exe
Size: 65.53 KB (65536 bytes)
MD5: 590eccfb979a183091b1b04413bebff0
Detection count: 76
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\raid64.exe File name: raid64.exe
Size: 80.81 KB (80817 bytes)
MD5: b78a1905cddd86f10a63e13ffd8de4e3
Detection count: 51
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 8, 2010
%TEMP%\3469025.txt File name: 3469025.txt
Size: 16.77 KB (16779 bytes)
MD5: 934697efa106f5928b72fa26685adae9
Detection count: 30
Mime Type: unknown/txt
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\updater.exe File name: updater.exe
Size: 671.74 KB (671744 bytes)
MD5: afed68d453da368293b62f861614aacd
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: December 7, 2010
%APPDATA%\ltzqai.exe File name: ltzqai.exe
Size: 81.92 KB (81920 bytes)
MD5: 57653cd7087e3e29acadfe9cc8d4a30b
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 7, 2010
%TEMP%\wmsdk64_32.exe File name: wmsdk64_32.exe
Size: 425.47 KB (425472 bytes)
MD5: f5fae166a18f1617c9e9cdd052d9fcaa
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\wuaucldt.exe File name: wuaucldt.exe
Size: 57.34 KB (57344 bytes)
MD5: c0b30e3f7e3f9a1fe860c740f55c9144
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 7, 2010
%TEMP%\wmsdk64_32.exe File name: wmsdk64_32.exe
Size: 425.47 KB (425472 bytes)
MD5: 2ea04ded71fca0e32d6927d19ce2c554
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%TEMP%\wmsdk64_32.exe File name: wmsdk64_32.exe
Size: 425.47 KB (425472 bytes)
MD5: 28271d3eb220ca2547e3a6b6e7e745e6
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\WinRER.exe File name: WinRER.exe
Size: 143.36 KB (143360 bytes)
MD5: 9c3a2027ccd06d0509574c243e2a5354
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: December 7, 2010
C:\log\shost.exe File name: shost.exe
Size: 348.73 KB (348733 bytes)
MD5: bc4235fd03eac02226f0294c35ce6516
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: C:\log
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\cidrive32.exe File name: cidrive32.exe
Size: 110.59 KB (110592 bytes)
MD5: dc10a294f924c3551d748de855f5ba53
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: December 7, 2010
%TEMP%\m.25FC.tmp.exe File name: m.25FC.tmp.exe
Size: 2.73 MB (2731008 bytes)
MD5: dfaf5a2bda3365f1192e169a9905733f
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%APPDATA%\0a5.exe File name: 0a5.exe
Size: 52.22 KB (52224 bytes)
MD5: 498ad5f49e69eb2e67a5cd4d712c7b02
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\TEMP\popka.exe File name: popka.exe
Size: 159.74 KB (159744 bytes)
MD5: 0c32f17aa0250949dc8301cb0fe375ec
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\TEMP\wmsdk64_32.exe File name: wmsdk64_32.exe
Size: 425.47 KB (425472 bytes)
MD5: 50e493f07a01d36ba8874edb2076e432
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: December 7, 2010

More files
Loading...