Home Malware Programs Trojans Downloader.Banload.KE

Downloader.Banload.KE

Posted: December 14, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 44
First Seen: December 14, 2010
OS(es) Affected: Windows

Aliases

Trj/CI.A [Panda]Generic19.AMBR [AVG]Trojan.Win32.Bredolab.Gen.pac (v) [Sunbelt]Win-Trojan/Katusha.175616.AS [AhnLab-V3]Packed/Win32.Katusha [Antiy-AVL]Win32/FakeAV.M!generic [eTrust-Vet]Mal/Katusha-A [Sophos]TR/Crypt.XPACK.Gen3 [AntiVir]Trojan.Packed.780 [DrWeb]Win32.PkdKrap.AS [Comodo]Packed.Win32.Katusha.o [Kaspersky]Trojan.FakeAV!gen32 [Symantec]a variant of Win32/Kryptik.GPP [NOD32]Generic.dx!uei [McAfee]Trj/Banbra.DQQ [Panda]
More aliases (74)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\SysWow64\javan.dll File name: javan.dll
Size: 663.04 KB (663040 bytes)
MD5: 91563763e0cbcc78673d61773bd28084
Detection count: 72
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\SysWow64
Group: Malware file
Last Updated: December 16, 2010
%WINDIR%\system32\_tmp\bmsz48EHLRVb.js File name: bmsz48EHLRVb.js
Size: 259.07 KB (259072 bytes)
MD5: 3f1f8ed870a9a6194e47b50bc7128242
Detection count: 37
File type: JavaScript file
Mime Type: unknown/js
Path: %WINDIR%\system32\_tmp
Group: Malware file
Last Updated: December 14, 2010
%WINDIR%\system32\_tmp\DJmsz28CHLRV.js File name: DJmsz28CHLRV.js
Size: 431.61 KB (431616 bytes)
MD5: e3fed0bda4f29614fce2b91a919a3ca4
Detection count: 15
File type: JavaScript file
Mime Type: unknown/js
Path: %WINDIR%\system32\_tmp
Group: Malware file
Last Updated: December 14, 2010
%PROGRAMFILES%\installshield installation information\{2966aba9-55df-475e-8d10-3a2ea9f2ccee}\setupsetup7.exe File name: setupsetup7.exe
Size: 175.61 KB (175616 bytes)
MD5: a80e739c848c7453ad92273ee9513976
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\installshield installation information\{2966aba9-55df-475e-8d10-3a2ea9f2ccee}
Group: Malware file
Last Updated: December 15, 2010
Loading...