Home Malware Programs Backdoors Backdoor.Qakbot

Backdoor.Qakbot

Posted: April 28, 2011

Threat Metric

Threat Level: 6/10
Infected PCs: 103
First Seen: April 28, 2011
OS(es) Affected: Windows

Aliases

Trj/OCJ.D [Panda]Generic32.BQVT [AVG]Trojan/Win32.Pincav [AhnLab-V3]TR/Pincav.cmzp [AntiVir]Trojan.Win32.Pincav.cmzp [Kaspersky]RDN/Generic.dx!bhv [McAfee]Trj/Genetic.gen [Panda]BackDoor.Generic17.APH [AVG]W32/QBot.AB!tr.bdr [Fortinet]Backdoor.Win32.QBot [Ikarus]Trojan/Win32.Foxy [AhnLab-V3]TROJ_SPNR.14DS13 [TrendMicro]TR/Rogue.965501 [AntiVir]Trojan.PWS.Panda.4125 [DrWeb]Backdoor.Win32.QBot.ab [Kaspersky]
More aliases (166)

Use SpyHunter to Detect and Remove PC Threats

If you are concerned that malware or PC threats similar to Backdoor.Qakbot may have infected your computer, we recommend you start an in-depth system scan with SpyHunter. SpyHunter is an advanced malware protection and remediation application that offers subscribers a comprehensive method for protecting PCs from malware, in addition to providing one-on-one technical support service.

Download SpyHunter's Malware Scanner

Note: SpyHunter's free version is only for malware detection. If SpyHunter detects malware on your PC, you will need to purchase SpyHunter's malware tool to remove the malware threats. Learn more on SpyHunter. If you would like to uninstall SpyHunter for any reason, please follow these uninstall instructions. To learn more about our policies and practices, visit our EULA, Privacy Policy and Threat Assessment Criteria .

Why can't I open any program including SpyHunter? You may have a malware file running in memory that kills any programs that you try to launch on your PC. Tip: Download SpyHunter from a clean computer, copy it to a USB thumb drive, DVD or CD, then install it on the infected PC and run SpyHunter's malware scanner.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



c:\users\user\appdata\roaming\microsoft\aynhwqvy\aynhwqvy.exe File name: aynhwqvy.exe
Size: 237.56 KB (237568 bytes)
MD5: c80f0ebb89a42b9903ecf1382367ebbe
Detection count: 76
File type: Executable File
Mime Type: unknown/exe
Path: c:\users\user\appdata\roaming\microsoft\aynhwqvy\
Group: Malware file
Last Updated: January 31, 2018
%APPDATA%\Microsoft\Ubvnl\ubvnl.exe File name: ubvnl.exe
Size: 189.39 KB (189392 bytes)
MD5: c012c8c02f757ef14aaf3a36e279ad5f
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Ubvnl\
Group: Malware file
Last Updated: March 1, 2013
%APPDATA%\Microsoft\Ywukrwpx\ywukrwpx.exe File name: ywukrwpx.exe
Size: 277.5 KB (277504 bytes)
MD5: 48e69094e690f90c3283220b2335420a
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Ywukrwpx\
Group: Malware file
Last Updated: December 18, 2012
%APPDATA%\Microsoft\Elpxg\elpxg.exe File name: elpxg.exe
Size: 208.7 KB (208704 bytes)
MD5: 2c6a2ce8ab9e260c85ee9c243b2b6fa0
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Elpxg\
Group: Malware file
Last Updated: December 20, 2012
%APPDATA%\Microsoft\Vxioywgo\vxioywgo.exe File name: vxioywgo.exe
Size: 258.04 KB (258048 bytes)
MD5: 9cd50b46b9bb6d1730289638ce6b5a91
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Vxioywgo\
Group: Malware file
Last Updated: February 6, 2013
%SystemDrive%\Documents and Settings\netuser\Application Data\Microsoft\Syjyaing\syjyaing.exe File name: syjyaing.exe
Size: 262.14 KB (262144 bytes)
MD5: 255cfd641a1ed38fdf7c813becff047e
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Documents and Settings\netuser\Application Data\Microsoft\Syjyaing\
Group: Malware file
Last Updated: February 11, 2013
%APPDATA%\Microsoft\Zabeqpr\zabeqpr.exe File name: zabeqpr.exe
Size: 262.14 KB (262144 bytes)
MD5: 8d8b9f81edefb6658437e079ba542fd8
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Zabeqpr\
Group: Malware file
Last Updated: March 1, 2013
%APPDATA%\Microsoft\Tukvmy\tukvmy.exe File name: tukvmy.exe
Size: 266.24 KB (266240 bytes)
MD5: 2336b40a3038a2012d6f7e1d239c4926
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Tukvmy\
Group: Malware file
Last Updated: May 1, 2013
%ALLUSERSPROFILE%\application data\microsoft\kyexkir\kyexkir.exe File name: kyexkir.exe
Size: 382.97 KB (382976 bytes)
MD5: d8e32bc498987650c9be435f9e14522a
Detection count: 3
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\application data\microsoft\kyexkir\
Group: Malware file
Last Updated: April 28, 2011

Related Posts