Home Malware Programs Trojans Downloader.Renos.NT

Downloader.Renos.NT

Posted: December 14, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 61
First Seen: December 14, 2010
OS(es) Affected: Windows

Aliases

Heuristic.BehavesLike.Win32.Trojan.H [McAfee-GW-Edition]TrojWare.Win32.StartPage.~XN [Comodo]W32/Backdoor2.DAUQ [F-Prot]Artemis!1218B90F8F55 [McAfee]FakeAV.GFF [AVG]W32/Agent.BNAS!tr [Fortinet]Trojan-Downloader.Win32.Renos [Ikarus]Mal/FakeAV-GX [Sophos]TR/Dldr.Renos.NT.15 [AntiVir]Trojan.DownLoad2.18833 [DrWeb]Trojan.Gen.2 [Symantec]W32/FakeAlert.JG3.gen!Eldorado [F-Prot]Win32/TrojanDownloader.FakeAlert.BGV [NOD32]Malware/Win32.Suspicious [AhnLab-V3]Artemis!C2390208F41F [McAfee-GW-Edition]
More aliases (127)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\???????????????OU-G\LH-ou.exe File name: LH-ou.exe
Size: 76.28 KB (76288 bytes)
MD5: 1218b90f8f556871579d31283b5553aa
Detection count: 74
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\???????????????OU-G
Group: Malware file
Last Updated: December 28, 2010
H:\enregistrement\CLOCK 7\Serial.Desktop_Clock7_1.13_Portable.45303.exe File name: Serial.Desktop_Clock7_1.13_Portable.45303.exe
Size: 685.05 KB (685056 bytes)
MD5: c2390208f41f9fd19a33db41715bb552
Detection count: 55
File type: Executable File
Mime Type: unknown/exe
Path: H:\enregistrement\CLOCK 7
Group: Malware file
Last Updated: December 21, 2010
%TEMP%\nmcroaxews.exe File name: nmcroaxews.exe
Size: 32.76 KB (32768 bytes)
MD5: 72d83a5f25254586126bde1e28d4d3a1
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 16, 2010
%TEMP%\m.29E90.tmp.exe File name: m.29E90.tmp.exe
Size: 4.12 MB (4128256 bytes)
MD5: d199f80f7f9a8d913c88f7c3b0c02369
Detection count: 13
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 17, 2010
%APPDATA%\Desktop\lsass.exe File name: lsass.exe
Size: 89.08 KB (89088 bytes)
MD5: 8e6966b7fcc9d2fe1f40a933fd05db21
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Desktop
Group: Malware file
Last Updated: December 16, 2010
%APPDATA%\win32Runtime.exe File name: win32Runtime.exe
Size: 180.22 KB (180224 bytes)
MD5: bef2157e2204690949dd5a91a26f7da6
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 15, 2010
%TEMP%\Rk1.exe File name: Rk1.exe
Size: 250.88 KB (250880 bytes)
MD5: 6dae57e0b48d40b94a78a05a2182755f
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 28, 2010
%WINDIR%\system32\msgnlive.exe File name: msgnlive.exe
Size: 994.81 KB (994816 bytes)
MD5: 1bd79ceef93040efb16b47676bb573b4
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 15, 2010
%TEMP%\Qz2.exe File name: Qz2.exe
Size: 195.07 KB (195072 bytes)
MD5: 23815ae413513325ab76104678b77da2
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 14, 2010
Loading...