Home Malware Programs Trojans Downloader.FakeRean

Downloader.FakeRean

Posted: November 30, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 578
First Seen: November 30, 2010
OS(es) Affected: Windows

Aliases

Crypt.YQS [AVG]Trojan.Crypt [Ikarus]Win-Trojan/Fakeav.166912.W [AhnLab-V3]TR/Agent.166400.3 [AntiVir]Trojan.Win32.FraudPack.beuy [Kaspersky]Generic.dx!tii [McAfee]SHeur3.ARJW [AVG]Win32/Tnega.SSE [eTrust-Vet]Trojan.Generic.KD.24776 [BitDefender]Trojan.Win32.FraudPack.beqa [Kaspersky]Downloader.Generic10.JNO [AVG]Trojan.Win32.Generic.pak!cobra [Sunbelt]TR/Dldr.FakeAV.AX [AntiVir]Trojan.Generic.KD.26359 [BitDefender]Trojan.Win32.FraudPack.bfho [Kaspersky]
More aliases (326)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%TEMP%\Windows-Update-KB237643-x86-ENU.exe File name: Windows-Update-KB237643-x86-ENU.exe
Size: 140.28 KB (140288 bytes)
MD5: e41e357860759915fc9b352d70ac9cea
Detection count: 326
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%TEMP%\903305888175964.exe File name: 903305888175964.exe
Size: 141.31 KB (141312 bytes)
MD5: 187aeff5c35a8ee29d5a6419ce8bd4db
Detection count: 64
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%TEMP%\pdfupd.exe File name: pdfupd.exe
Size: 170.49 KB (170496 bytes)
MD5: 6fbeb65da9a4007b334b33d0ec6e2a60
Detection count: 61
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%APPDATA%\MSA\baka10.exe File name: baka10.exe
Size: 164.35 KB (164352 bytes)
MD5: 8c58c1909bf8419e429b68118607073f
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\MSA
Group: Malware file
Last Updated: December 14, 2010
%TEMP%\~TM3CC2.tmp File name: ~TM3CC2.tmp
Size: 187.9 KB (187904 bytes)
MD5: fecf32f92f476f06ebb6e9120715aefb
Detection count: 40
File type: Temporary File
Mime Type: unknown/tmp
Path: %TEMP%
Group: Malware file
Last Updated: November 30, 2010
%WINDIR%\temp\bn2.tmp File name: bn2.tmp
Size: 146.94 KB (146944 bytes)
MD5: 8c59f0379ef8eb90d4dfe54b1ef3f6d6
Detection count: 36
File type: Temporary File
Mime Type: unknown/tmp
Path: %WINDIR%\temp
Group: Malware file
Last Updated: December 7, 2010
%PROGRAMFILES%\wave systems corp\common\he\transferarchiverlibrary.exe File name: transferarchiverlibrary.exe
Size: 166.4 KB (166400 bytes)
MD5: 9645911cf682943f8a72bc012315078c
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\wave systems corp\common\he
Group: Malware file
Last Updated: December 7, 2010
%TEMP%\vIQm.exe File name: vIQm.exe
Size: 153.6 KB (153600 bytes)
MD5: a71863cea7fccaa23fca6d323681b4cb
Detection count: 24
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 8, 2010
%TEMP%\UmkK.exe File name: UmkK.exe
Size: 145.92 KB (145920 bytes)
MD5: 42000c480a09646f50cea37cddaebaae
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 8, 2010
%COMMONPROGRAMFILES%\system\ado\accessmicrosoft.exe File name: accessmicrosoft.exe
Size: 150.52 KB (150528 bytes)
MD5: a242d533df0ce40baac96f655e1c1751
Detection count: 20
File type: Executable File
Mime Type: unknown/exe
Path: %COMMONPROGRAMFILES%\system\ado
Group: Malware file
Last Updated: December 8, 2010
%TEMP%\Kias.exe File name: Kias.exe
Size: 151.04 KB (151040 bytes)
MD5: e3f6a36a69f678b12cde3c3d05b3034b
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 8, 2010
%COMMONPROGRAMFILES%\microsoft shared\msdesigners7\msvcr71microsoft.exe File name: msvcr71microsoft.exe
Size: 151.04 KB (151040 bytes)
MD5: d992ff836e00200b597b8d8d4b78265f
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %COMMONPROGRAMFILES%\microsoft shared\msdesigners7
Group: Malware file
Last Updated: December 8, 2010
%WINDIR%\Temp\~TM31.tmp File name: ~TM31.tmp
Size: 167.42 KB (167424 bytes)
MD5: 5be4b708a68687cb5490fe2caea49c82
Detection count: 10
File type: Temporary File
Mime Type: unknown/tmp
Path: %WINDIR%\Temp
Group: Malware file
Last Updated: December 7, 2010
%LOCALAPPDATA%\google\update\1.2.183.29\googlefrissts.exe File name: googlefrissts.exe
Size: 166.4 KB (166400 bytes)
MD5: 6e18acf50078c7606777a5383c526d27
Detection count: 10
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\google\update\1.2.183.29
Group: Malware file
Last Updated: December 7, 2010
%USERPROFILE%\Desktop\o.dat File name: o.dat
Size: 154.62 KB (154624 bytes)
MD5: f5ce575dee661c7d8d648ddfce2aaaab
Detection count: 9
File type: Data file
Mime Type: unknown/dat
Path: %USERPROFILE%\Desktop
Group: Malware file
Last Updated: December 7, 2010
%APPDATA%\MSA\baka5.exe File name: baka5.exe
Size: 149.5 KB (149504 bytes)
MD5: 48e6597f43f27dc7c42f79e60d0b1e06
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\MSA
Group: Malware file
Last Updated: December 7, 2010
%TEMP%\exe.exe File name: exe.exe
Size: 147.45 KB (147456 bytes)
MD5: fe065252f32b02e2d02b5e0ff78de470
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%APPDATA%\MSA\baka7.exe File name: baka7.exe
Size: 142.33 KB (142336 bytes)
MD5: 23e80ffd5f952c35f7687a0d544df835
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\MSA
Group: Malware file
Last Updated: December 7, 2010
%APPDATA%\MSA\bbaka10.exe File name: bbaka10.exe
Size: 166.91 KB (166912 bytes)
MD5: 3b85b7c46526fef8fdfc07603c89b07e
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\MSA
Group: Malware file
Last Updated: December 14, 2010
%TEMP%\0.4963503726991707.exe File name: 0.4963503726991707.exe
Size: 166.4 KB (166400 bytes)
MD5: 49baecd50f9bdcc36ea350956922415f
Detection count: 0
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: May 3, 2011

More files

Related Posts

Loading...