Home Malware Programs Backdoors Backdoor.Xtrat.B

Backdoor.Xtrat.B

Posted: September 10, 2012

Threat Metric

Ranking: 19,257
Threat Level: 6/10
Infected PCs: 7,776
First Seen: September 10, 2012
Last Seen: January 4, 2025
OS(es) Affected: Windows

Aliases

Generic29.ATNH [AVG]Trojan-Dropper.Win32.Delf [Ikarus]TrojWare.Win32.PSW.Lineage.UZH0 [Comodo]Win32.Trojan [eSafe]Artemis!D3EAEC305BCB [McAfee]Logger.FJK [AVG]not-a-virus:Monitor.Win32.IP-guard [Ikarus]SPR/IP-guard.F [AntiVir]UnclassifiedMalware [Comodo]not-a-virus:Monitor.Win32.IP-guard.f [Kaspersky]Adware.Gen [Symantec]Generic PUP.x [McAfee]Generic Malware [Panda]Generic20.OEV [AVG]W32/Buzus.GQ!tr [Fortinet]
More aliases (53)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\SysWOW64\InstallDir\system.exe File name: system.exe
Size: 202.23 KB (202232 bytes)
MD5: 8bd2089993a5b7c3bdfeb7de8b610536
Detection count: 117
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\SysWOW64\InstallDir
Group: Malware file
Last Updated: October 1, 2016
file.exe File name: file.exe
Size: 2.36 MB (2361279 bytes)
MD5: f673bfc8f9d38b42b8b4cb76e9c5c25b
Detection count: 91
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: October 18, 2016
%APPDATA%\Microsoft\Windows\msshell.exe File name: msshell.exe
Size: 18.43 KB (18432 bytes)
MD5: d3eaec305bcbf5c3fc0b239777a7fb81
Detection count: 89
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: September 14, 2012
C:\Windows\SysWOW64\Kis2013.exe File name: Kis2013.exe
Size: 467.45 KB (467456 bytes)
MD5: 670563f8dc2e99208dc0244b45de1551
Detection count: 54
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\SysWOW64\Kis2013.exe
Group: Malware file
Last Updated: February 12, 2022
%APPDATA%\svch.exe File name: svch.exe
Size: 513.53 KB (513536 bytes)
MD5: 6621a1ff3988c4c5fc326ae7ffc5c97e
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: March 13, 2017
%APPDATA%\systeeeeme\dllll.exe File name: dllll.exe
Size: 384 KB (384000 bytes)
MD5: 24f4d86c800bf16a0d3f3edc917bf494
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\systeeeeme
Group: Malware file
Last Updated: September 10, 2012

More files

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%APPDATA%\Xtreme\Xtreme.exe%WINDIR%\Oficce\Wolrd.exe

Additional Information

The following directories were created:
%APPDATA%\InstallDir
Loading...