Home Malware Programs Trojans Downloader.Vemcas.A

Downloader.Vemcas.A

Posted: March 31, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 129
First Seen: March 31, 2011
Last Seen: November 29, 2020
OS(es) Affected: Windows

Aliases

Gen:Variant.Kazy.19001 [F-Secure]Trojan.Generic.KD.187049 [BitDefender]a variant of Win32/Kryptik.MPH [NOD32]Downloader.Generic11.FST [AVG]Trojan.Win32.Hiloti [Ikarus]Trojan.Hiloti.5 [DrWeb]Trojan-Downloader.Win32.Mufanom.bfnz [Kaspersky]a variant of Win32/Cimag.GT [NOD32]AdSearcher.AV [AVG]Zwangi [Sophos]Adware-OneStep.l [McAfee]SHeur3.BSYF [AVG]TR/Kazy.17560 [AntiVir]Trojan.Hiloti.4 [DrWeb]Win32/Cimag.FY [NOD32]
More aliases (84)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\atiumdag32.dll File name: atiumdag32.dll
Size: 430.59 KB (430592 bytes)
MD5: 3fe445fc7032ff3dc32acb88bf6e939f
Detection count: 85
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: April 1, 2011
%LOCALAPPDATA%\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z9YA6ZNE\scanner.exe File name: scanner.exe
Size: 135.68 KB (135680 bytes)
MD5: 425cb34f086a3f13489e9e13c1d79966
Detection count: 71
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z9YA6ZNE
Group: Malware file
Last Updated: April 4, 2011
%LOCALAPPDATA%\lerfmilm.dll File name: lerfmilm.dll
Size: 87.55 KB (87552 bytes)
MD5: bf6e6de29d4d0ab09896814a79d426c3
Detection count: 70
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: April 6, 2011
%LOCALAPPDATA%\lalsmsD.dll File name: lalsmsD.dll
Size: 97.79 KB (97792 bytes)
MD5: deeb68d682be8310cf7b25b86d4477fa
Detection count: 31
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: April 11, 2011
%PROGRAMFILES%\Sticky Password\stpass.exe File name: stpass.exe
Size: 2.82 MB (2825728 bytes)
MD5: e42952446f1a90a0f300e7e4b4b6a7ec
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Sticky Password
Group: Malware file
Last Updated: November 29, 2020
%ALLUSERSPROFILE%\ScanQuery\scanquery110.exe File name: scanquery110.exe
Size: 49.15 KB (49152 bytes)
MD5: 8337fb0e73d9578ab8eb14c83767ae61
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\ScanQuery
Group: Malware file
Last Updated: April 1, 2011
%ALLUSERSPROFILE%\Datos de programa\KiwroKwhwkl.exe File name: KiwroKwhwkl.exe
Size: 546.3 KB (546304 bytes)
MD5: cf7b43a7b6881ea993c78088a9a02e23
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Datos de programa
Group: Malware file
Last Updated: April 1, 2011
%ALLUSERSPROFILE%\Dati applicazioni\tAExRDJWhvf.exe File name: tAExRDJWhvf.exe
Size: 561.15 KB (561152 bytes)
MD5: e5afdb6b99aa7c13ac3d90815ab08e61
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Dati applicazioni
Group: Malware file
Last Updated: April 18, 2011
%WINDIR%\Sys\msserv.exe File name: msserv.exe
Size: 516.6 KB (516608 bytes)
MD5: 2606ac38c5f5c3066c99405497220773
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Sys
Group: Malware file
Last Updated: April 4, 2011
%PROGRAMFILES%\QuestBrwSearch\questbrwsearch.dll File name: questbrwsearch.dll
Size: 573.44 KB (573440 bytes)
MD5: 5ff42ddb9e35ee28e7427445a8760a45
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\QuestBrwSearch
Group: Malware file
Last Updated: April 1, 2011
%TEMP%\svshost.exe File name: svshost.exe
Size: 380.92 KB (380928 bytes)
MD5: 0d3530de28faf134ab465ee9449b71b0
Detection count: 0
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: March 31, 2011
Loading...