Home Malware Programs Backdoors Backdoor.Xtrat.B

Backdoor.Xtrat.B

Posted: September 10, 2012

Threat Metric

Ranking: 8,724
Threat Level: 6/10
Infected PCs: 7,727
First Seen: September 10, 2012
Last Seen: October 15, 2023
OS(es) Affected: Windows

Aliases

Generic29.ATNH [AVG]Trojan-Dropper.Win32.Delf [Ikarus]TrojWare.Win32.PSW.Lineage.UZH0 [Comodo]Win32.Trojan [eSafe]Artemis!D3EAEC305BCB [McAfee]Logger.FJK [AVG]not-a-virus:Monitor.Win32.IP-guard [Ikarus]SPR/IP-guard.F [AntiVir]UnclassifiedMalware [Comodo]not-a-virus:Monitor.Win32.IP-guard.f [Kaspersky]Adware.Gen [Symantec]Generic PUP.x [McAfee]Generic Malware [Panda]Generic20.OEV [AVG]W32/Buzus.GQ!tr [Fortinet]
More aliases (53)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\InstallDir\Server.exe File name: Server.exe
Size: 313.34 KB (313344 bytes)
MD5: b0e923efe06f0d50f5a3769c64c45e12
Detection count: 356
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\InstallDir
Group: Malware file
Last Updated: May 12, 2019
%WINDIR%\SysWOW64\InstallDir\system.exe File name: system.exe
Size: 202.23 KB (202232 bytes)
MD5: 8bd2089993a5b7c3bdfeb7de8b610536
Detection count: 117
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\SysWOW64\InstallDir
Group: Malware file
Last Updated: October 1, 2016
%WINDIR%\InstallDir\Server.exe File name: Server.exe
Size: 124.41 KB (124416 bytes)
MD5: 838459546c79bfba4193282905120ba5
Detection count: 94
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\InstallDir
Group: Malware file
Last Updated: October 1, 2016
%WINDIR%\install\svch.eXe File name: svch.eXe
Size: 1.3 MB (1300554 bytes)
MD5: cd5026c55f2b0248e962b67b59f3388c
Detection count: 91
File type: Executable File
Mime Type: unknown/eXe
Path: %WINDIR%\install
Group: Malware file
Last Updated: March 13, 2017
file.exe File name: file.exe
Size: 2.36 MB (2361279 bytes)
MD5: f673bfc8f9d38b42b8b4cb76e9c5c25b
Detection count: 91
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: October 18, 2016
%WINDIR%\InstallDir\Server.exe File name: Server.exe
Size: 800.26 KB (800266 bytes)
MD5: 0fd6e0a00a47c9a23a3b78fb50da6d3b
Detection count: 89
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\InstallDir
Group: Malware file
Last Updated: October 1, 2016
%APPDATA%\InstallDir\Server.exe File name: Server.exe
Size: 249.13 KB (249137 bytes)
MD5: ddebe92c83b2187a727d94bd86e4b792
Detection count: 80
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\InstallDir
Group: Malware file
Last Updated: October 1, 2016
%APPDATA%\InstallDir\Server.exe File name: Server.exe
Size: 460.6 KB (460601 bytes)
MD5: e16d03efbaf152a01e6e72603e88cdd2
Detection count: 70
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\InstallDir
Group: Malware file
Last Updated: October 1, 2016
%WINDIR%\InstallDir\Server.exe File name: Server.exe
Size: 483.32 KB (483328 bytes)
MD5: ce42cc6d72f146fb0efe4b40ea2582e4
Detection count: 63
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\InstallDir
Group: Malware file
Last Updated: October 1, 2016
%WINDIR%\InstallDir\Server.exe File name: Server.exe
Size: 42.03 KB (42034 bytes)
MD5: 5c67a4941286bf13edd86077cc78098d
Detection count: 59
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\InstallDir
Group: Malware file
Last Updated: October 1, 2016
%APPDATA%\InstallDir\Server.exe File name: Server.exe
Size: 389.12 KB (389120 bytes)
MD5: 045a4cbe7e8c5779578ce485fafda36d
Detection count: 49
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\InstallDir
Group: Malware file
Last Updated: October 1, 2016
%APPDATA%\InstallDir\Server.exe File name: Server.exe
Size: 33.79 KB (33792 bytes)
MD5: 29d1796a4fc12d79882af70beb3f83b1
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\InstallDir
Group: Malware file
Last Updated: October 1, 2016
%USERPROFILE%\sAy92L\vbc.exe File name: vbc.exe
Size: 1.15 MB (1150294 bytes)
MD5: 90dbf6b13429318a63e0fdb4c24e3d35
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\sAy92L
Group: Malware file
Last Updated: November 16, 2016
%APPDATA%\InstallDir\System.exe File name: System.exe
Size: 958.97 KB (958976 bytes)
MD5: 709024b2fd9130dab13892997d1c061a
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\InstallDir
Group: Malware file
Last Updated: October 1, 2016
%APPDATA%\InstallDir\system.exe File name: system.exe
Size: 88.05 KB (88053 bytes)
MD5: bb3e7f76a00ab48294b75062557eccc0
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\InstallDir
Group: Malware file
Last Updated: October 1, 2016
%USERPROFILE%\eHj92V\vbc.exe File name: vbc.exe
Size: 1.44 MB (1448619 bytes)
MD5: d09b3033a7361983b969d10d29c1c8a6
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\eHj92V
Group: Malware file
Last Updated: November 16, 2016
%APPDATA%\svch.exe File name: svch.exe
Size: 513.53 KB (513536 bytes)
MD5: 6621a1ff3988c4c5fc326ae7ffc5c97e
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: March 13, 2017
%WINDIR%\System32\Microsoft\svch.exe File name: svch.exe
Size: 676.51 KB (676517 bytes)
MD5: 689e1701fdd58583ebf9ead2312bfbe9
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\System32\Microsoft
Group: Malware file
Last Updated: March 13, 2017

More files

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%APPDATA%\Xtreme\Xtreme.exe%WINDIR%\Oficce\Wolrd.exe

Additional Information

The following directories were created:
%APPDATA%\InstallDir
Loading...