Home Malware Programs Backdoors Backdoor.NetWiredRC.A

Backdoor.NetWiredRC.A

Posted: May 15, 2013

Threat Metric

Ranking: 9,984
Threat Level: 6/10
Infected PCs: 1,639
First Seen: May 15, 2013
Last Seen: October 14, 2023
OS(es) Affected: Windows

Aliases

Trj/CI.A [Panda]BackDoor.Generic16.ESN [AVG]MSIL/Injector.QR!tr [Fortinet]Backdoor.Win32.DarkKomet [Ikarus]Trojan/Win32.Blocker [AhnLab-V3]Backdoor:Win32/NetWiredRC.A [Microsoft]TR/Dropper.MSIL.Gen8 [AntiVir]BackDoor.Siggen.48301 [DrWeb]UnclassifiedMalware [Comodo]Trojan-Ransom.Win32.Blocker.abhe [Kaspersky]MSIL:Agent-WB [Trj] [Avast]Artemis!4D6188FBE2F9 [McAfee]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



file.exe File name: file.exe
Size: 249.85 KB (249856 bytes)
MD5: e0035f9f927e82c01ac334e4a7da7c7b
Detection count: 75
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: October 19, 2016
file.exe File name: file.exe
Size: 225.28 KB (225280 bytes)
MD5: 2130e474b8e00c2e1a188d718756ab9b
Detection count: 66
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: October 16, 2016
file.exe File name: file.exe
Size: 192.51 KB (192512 bytes)
MD5: 38f4b687cf411c493a09d5afeb63e799
Detection count: 64
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
file.exe File name: file.exe
Size: 745.47 KB (745472 bytes)
MD5: 5be547659e50b5898f2a58ad97e677dd
Detection count: 31
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: November 2, 2017
%APPDATA%\FacbookUpdate.exe File name: FacbookUpdate.exe
Size: 771.07 KB (771072 bytes)
MD5: 4d6188fbe2f9ba21429b304b82a1ecc3
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: May 15, 2013
%APPDATA%\Microsoft\eacbucva\utsshvdc.exe File name: utsshvdc.exe
Size: 395.77 KB (395776 bytes)
MD5: 80f2fca1418d43543b454fc1846ae5ef
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\eacbucva
Group: Malware file
Last Updated: August 10, 2017
C:\Users\<username>\Desktop\file.exe File name: file.exe
Size: 506.88 KB (506880 bytes)
MD5: 5e1a8f636289ff11326a2d091a54c8f3
Detection count: 3
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Desktop
Group: Malware file
Last Updated: October 19, 2018

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%APPDATA%\Install\mswords.exe%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\Winhost.url%TEMP%\Host.exe

Additional Information

The following directories were created:
%APPDATA%\mscftmon
Loading...