Home Malware Programs Backdoors Backdoor.Nosrawec.C

Backdoor.Nosrawec.C

Posted: January 16, 2013

Threat Metric

Threat Level: 6/10
Infected PCs: 28
First Seen: January 16, 2013
OS(es) Affected: Windows

Aliases

Suspicious file [Panda]Adware/AdInstaller [Fortinet]TR/Rogue.A.295 [AntiVir]Tool.InstallToolbar.5 [DrWeb]ApplicUnwnt.Win32.Adware.MyWay.DAA [Comodo]Win32:FunWeb-K [PUP] [Avast]Dropper.Generic4.NED [AVG]W32/Swisyn.HA!tr.spy [Fortinet]Virus.Win32.Crypted [Ikarus]Backdoor:Win32/Nosrawec.C [Microsoft]Heuristic.BehavesLike.Win32.ModifiedUPX.R [McAfee-GW-Edition]TR/Crypt.PEPM.Gen [AntiVir]Trojan.VbCrypt.47 [DrWeb]TrojWare.Win32.Agent.frqs [Comodo]GenPack:Trojan.Generic.7203113 [BitDefender]
More aliases (38)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%LOCALAPPDATA%\IWON Installer(00028381).exe File name: IWON Installer(00028381).exe
Size: 82.05 KB (82057 bytes)
MD5: 220dc53078f1535ccba83c4454832eaf
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: January 21, 2013
%SystemDrive%\Documents and Settings\user\Local Settings\Application Data\ctfmon.exe File name: ctfmon.exe
Size: 1.31 MB (1319936 bytes)
MD5: a61685d0711bc4343e053c5348c3b9dd
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Documents and Settings\user\Local Settings\Application Data
Group: Malware file
Last Updated: January 16, 2013
Loading...