Home Malware Programs Viruses VirTool:Win32/CeeInject.gen!BE

VirTool:Win32/CeeInject.gen!BE

Posted: March 18, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 649
First Seen: December 1, 2010
OS(es) Affected: Windows

VirTool:Win32/CeeInject.gen!BE is a banking Trojan that disables the firewall and steals sensitive financial data. VirTool:Win32/CeeInject.gen!BE will make screen snapshots, download additional components and provide a hacker with the remote access to the compromised system. VirTool:Win32/CeeInject.gen!BE operates in stealth-mode and downloads a keylogger program that steals personal information. VirTool:Win32/CeeInject.gen!BE contains characteristics of a security risk and should be terminated from the compromised computer.

VirTool:Win32/CeeInject.gen!BE

Aliases

Dropper.Generic.CJQI [AVG]Generic Backdoor [Panda]a variant of Win32/Injector.BGJ [NOD32]W32/Spybot.worm!dv [McAfee]Backdoor.Win32.IRCBot.opl [Kaspersky]W32/Rimecud.D!tr.bdr [Fortinet]Win32/CInject.EZ [eTrust-Vet]Trojan.PWS.Siggen.4539 [DrWeb]Backdoor.Bot.119407 [BitDefender]Dropper.Generic.CJJY [AVG]Worm/IrcBot.60559 [AntiVir]BKDR_IRCBOT.SMX [TrendMicro]W32.IRCBot [Symantec]W32/OscarBot.XW [Panda]Worm.IrcBot.93327.5 [McAfee-GW-Edition]
More aliases (135)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PUBLIC%\jusched.exe File name: jusched.exe
Size: 70.65 KB (70656 bytes)
MD5: c26a510ad3af5cfd1052f69a9d5f76e9
Detection count: 251
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: December 1, 2010
%PUBLIC%\jusched.exe File name: jusched.exe
Size: 70.65 KB (70656 bytes)
MD5: 5299f1cfb39e1c8e78ee193e3b63e99a
Detection count: 49
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: December 1, 2010
F:\Z_GeRy\IM27412.JPG-www.myspace.com.exe File name: IM27412.JPG-www.myspace.com.exe
Size: 93.32 KB (93327 bytes)
MD5: a18608da7eda355325684240f0883639
Detection count: 45
File type: Executable File
Mime Type: unknown/exe
Path: F:\Z_GeRy
Group: Malware file
Last Updated: December 8, 2010
%WINDIR%\infocard.exe File name: infocard.exe
Size: 103.56 KB (103565 bytes)
MD5: b8eeef3d78016b2d495010c7bea2a0ed
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: December 8, 2010
%PUBLIC%\infocard.exe File name: infocard.exe
Size: 103.56 KB (103565 bytes)
MD5: 73e80a09692bdc0d96ef403dd1add289
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: December 8, 2010
%WINDIR%\mdm.exe File name: mdm.exe
Size: 60.55 KB (60559 bytes)
MD5: 0659b63a65eb1be644fa45f0e3c75a52
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: December 8, 2010
%USERPROFILE%\Documenti\Immagini\Photo\eugenio\IM67363.JPG-www.myspace.com.exe File name: IM67363.JPG-www.myspace.com.exe
Size: 93.32 KB (93327 bytes)
MD5: a2d0151ffe3102d42b7b160cff0fb67a
Detection count: 0
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Documenti\Immagini\Photo\eugenio
Group: Malware file
Last Updated: July 20, 2011
Loading...