Home Malware Programs Backdoors Backdoor.Cechip.A

Backdoor.Cechip.A

Posted: November 9, 2012

Threat Metric

Ranking: 16,812
Threat Level: 6/10
Infected PCs: 328
First Seen: November 9, 2012
Last Seen: September 24, 2023
OS(es) Affected: Windows

Aliases

Generic_s.ZP [AVG]BDS/Cechip.A.9 [AntiVir]Trojan.VBS.Zapchast.ax [Kaspersky]Win.Trojan.Banker-1371 [ClamAV]Artemis!2F50E6137775 [McAfee]W32/Agent.XHY!tr [Fortinet]Troj/Agent-XHY [Sophos]BDS/Cechip.A.1 [AntiVir]Generic BackDoor!fb3 [McAfee]Backdoor.Cechip [CAT-QuickHeal]TR/Bublik.843776.15 [AntiVir]Trojan.Win32.Bublik.teb [Kaspersky]Artemis!565348BDA2ED [McAfee]Trojan-Downloader.Win32.Andromeda.clr [Kaspersky]RAT/ProcLaunch [Fortinet]
More aliases (272)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\Local Settings\Temp\msaoigria.scr File name: msaoigria.scr
Size: 106.49 KB (106496 bytes)
MD5: f848c8a197e09304300e5f931c006e30
Detection count: 74
Mime Type: unknown/scr
Path: %ALLUSERSPROFILE%\Local Settings\Temp
Group: Malware file
Last Updated: November 19, 2012
%APPDATA%\egkepxcackaofrwsjvh.exe File name: egkepxcackaofrwsjvh.exe
Size: 1.08 MB (1086512 bytes)
MD5: 0c3651c80afd16efccfea6cc83ade13d
Detection count: 70
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: November 14, 2012
%WINDIR%\system32\fastsrch.dll File name: fastsrch.dll
Size: 123.39 KB (123392 bytes)
MD5: cf9b00b93a53e6ffcf1d206f9e3bc2b6
Detection count: 61
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: November 12, 2012
%WINDIR%\system32\fastsrch.dll File name: fastsrch.dll
Size: 123.39 KB (123392 bytes)
MD5: fff8860754dfa219af7356c27a7ae93b
Detection count: 53
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: November 13, 2012
%USERPROFILE%\0.19249742272061343.exe File name: 0.19249742272061343.exe
Size: 199.16 KB (199168 bytes)
MD5: d250160332c86c76af92217b11b3fed8
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: November 13, 2012
%ALLUSERSPROFILE%\System.exe File name: System.exe
Size: 240.81 KB (240818 bytes)
MD5: fbbf20c9fdb8f6e6821c91cdbc977d59
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: November 12, 2012
%PROGRAMFILES%\kaspersky lab\kaspersky password manager\stpass.exe File name: stpass.exe
Size: 7.19 MB (7198672 bytes)
MD5: 12f9152309e95b092e18768cf2943eba
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\kaspersky lab\kaspersky password manager
Group: Malware file
Last Updated: November 12, 2012
%TEMP%\EKvGkmY.exe File name: EKvGkmY.exe
Size: 46.58 KB (46582 bytes)
MD5: a673db48a626644d2de9f11876308b06
Detection count: 24
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: November 12, 2012
%WINDIR%\SysWOW64\config\systemprofile\AppData\Local\nykkygy.dll File name: nykkygy.dll
Size: 11.26 KB (11264 bytes)
MD5: 18321230c3ac5addc92a0b091289616f
Detection count: 21
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\SysWOW64\config\systemprofile\AppData\Local
Group: Malware file
Last Updated: November 12, 2012
%WINDIR%\System32\install\Updater.exe File name: Updater.exe
Size: 841.68 KB (841680 bytes)
MD5: 565348bda2ed63210028116d8a00851c
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\System32\install
Group: Malware file
Last Updated: November 19, 2012
%USERPROFILE%\Mes documents\claude Tougard\combofix.exe File name: combofix.exe
Size: 2.93 MB (2936485 bytes)
MD5: eddf1ba196e92ec794d594c71facf645
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Mes documents\claude Tougard
Group: Malware file
Last Updated: July 24, 2020
%SystemDrive%\Users\<username>\AppData\Local\Temp\wgsdgsdgdsgsd.exe File name: wgsdgsdgdsgsd.exe
Size: 188.41 KB (188416 bytes)
MD5: 347f510abeebdf3ca4ec7ede81542c0b
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Local\Temp
Group: Malware file
Last Updated: November 14, 2012
C:\PROGRA~1\PERSYS~1\Perav\Usb2010.exe File name: Usb2010.exe
Size: 30.72 KB (30720 bytes)
MD5: 0b1a6014b541159ffda43e0a158e1792
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: C:\PROGRA~1\PERSYS~1\Perav\Usb2010.exe
Group: Malware file
Last Updated: September 24, 2023
%PROGRAMFILES%\Ascentive\Performance Center\ApcMain.exe File name: ApcMain.exe
Size: 3.24 MB (3244032 bytes)
MD5: 284fb529c3b2ae6caa936c5ebb8ebb20
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Ascentive\Performance Center
Group: Malware file
Last Updated: November 13, 2012
%ALLUSERSPROFILE%\Local Settings\Temp\msirmagua.pif File name: msirmagua.pif
Size: 77.82 KB (77824 bytes)
MD5: df9f2569b7119cc66301501aa1d89531
Detection count: 5
Mime Type: unknown/pif
Path: %ALLUSERSPROFILE%\Local Settings\Temp
Group: Malware file
Last Updated: November 12, 2012
%APPDATA%\18DD.exe File name: 18DD.exe
Size: 54.79 KB (54796 bytes)
MD5: e98e32080fc4d5aa9972c44cc905fb6b
Detection count: 0
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: November 13, 2012
Loading...