Home Malware Programs Trojans Dynamer!dtc

Dynamer!dtc

Posted: November 30, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 33,939
First Seen: November 30, 2010
Last Seen: November 18, 2024
OS(es) Affected: Windows

Dynamer!dtc is a detection name for a file that is considered to have trojan-like behavior. There are several means of distribution for threats like Dynamer!dtc. Users may get infected by visiting malicious websites or legitimate websites that have been hacked. Dynamer!dtc enter your system via spam e-mails with possibly infected attachments or by tricking users into downloading a useful piece of software such as an update of Adobe Flash Player. Once entered your system, Dynamer!dtc may attract other malware, causing your operating system to run in a significantly sluggish way. Threats such as Dynamer!dtc are known to exhibit suspicious behavior that classifies as potentially malicious.

Aliases

Generic15.FFA [AVG]W32/SPNR.29EE12!tr [Fortinet]Generic.dx!bhqx [McAfee-GW-Edition]Tool.KillKis.225 [DrWeb]HackTool.Win32.Kiser.bib [Kaspersky]Win32:Virtualizer [Cryp] [Avast]Generic.dx!08BABDF768AD [McAfee]HackTool.Kiser.bib (Not a Virus) [CAT-QuickHeal]Downloader.Generic13.ASNY [AVG]W32/Moure.A!tr.dldr [Fortinet]Artemis!83A19D741093 [McAfee-GW-Edition]TR/Rogue.9053669 [AntiVir]Trojan.DownLoader9.3008 [DrWeb]RDN/Downloader.a!ju [McAfee]PSW.Banker6.ANXL [AVG]
More aliases (3285)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\c35312fb3a7e05b7a44db2326bd29040.exe File name: c35312fb3a7e05b7a44db2326bd29040.exe
Size: 84.8 KB (84801 bytes)
MD5: 44039299619ac01f3aff273df6113f0b
Detection count: 571
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: April 15, 2016
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\geehsufa\tcvbfhus.exe File name: tcvbfhus.exe
Size: 11.02 MB (11027968 bytes)
MD5: 773bdf1efa009675927b02f0611230f7
Detection count: 265
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\geehsufa
Group: Malware file
Last Updated: January 6, 2019
%APPDATA%\Microsoft\Blend\14.0\FeedCache\sigverify.exe File name: sigverify.exe
Size: 19.96 KB (19968 bytes)
MD5: 7fabd6c7a94d0ed63bccc4d812242a12
Detection count: 171
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Blend\14.0\FeedCache
Group: Malware file
Last Updated: June 18, 2016
%SYSTEMDRIVE%\$Recycle.Bin\S-1-5-21-1401033948-361726193-366162344-1000\$R519Y3N.37316\KW.exe File name: KW.exe
Size: 1.01 MB (1019392 bytes)
MD5: 08babdf768ad9ccc9546ba3bc6314fe9
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\$Recycle.Bin\S-1-5-21-1401033948-361726193-366162344-1000\$R519Y3N.37316\KW.exe
Group: Malware file
Last Updated: August 26, 2020
%USERPROFILE%\Documents\550910ff.exe File name: 550910ff.exe
Size: 34.3 KB (34304 bytes)
MD5: 83a19d741093d2c1fd95930a1b5b0bd7
Detection count: 50
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Documents
Group: Malware file
Last Updated: May 13, 2013
%WINDIR%\TEMP\ms7ACA.exe File name: ms7ACA.exe
Size: 24.57 KB (24576 bytes)
MD5: 6c1054f8f9bf2a6320c8cb1930d029af
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP\ms7ACA.exe
Group: Malware file
Last Updated: May 17, 2021
%SystemDrive%\win7xe\winlogons.exe File name: winlogons.exe
Size: 2.08 MB (2088960 bytes)
MD5: ccc9b1e92886a573b0d970084f09244a
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\win7xe
Group: Malware file
Last Updated: April 16, 2013
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\Schosts.exe File name: Schosts.exe
Size: 3.24 MB (3248021 bytes)
MD5: 3fdd5af326177bc32ea87257b9242cec
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: June 11, 2016
%SYSTEMDRIVE%\$Recycle.Bin\S-1-5-21-692190577-3325293299-2905414286-1000\$R35DLLC.exe File name: $R35DLLC.exe
Size: 36.86 KB (36864 bytes)
MD5: e2ea315d9a83e7577053f52c974f6a5a
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\$Recycle.Bin\S-1-5-21-692190577-3325293299-2905414286-1000\$R35DLLC.exe
Group: Malware file
Last Updated: May 17, 2021
%APPDATA%\NsResize.dll File name: NsResize.dll
Size: 73.72 KB (73728 bytes)
MD5: 8df4561d01689fe440bf37e9b5ac897d
Detection count: 33
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: June 1, 2016
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Arrays.dll File name: Arrays.dll
Size: 11.26 KB (11264 bytes)
MD5: 74e0c6053e57172eb006d64fa0cea141
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Arrays.dll
Group: Malware file
Last Updated: June 26, 2020
%APPDATA%\GD1.exe File name: GD1.exe
Size: 32.76 KB (32768 bytes)
MD5: b22c05245e226288b12d76c193f2ef86
Detection count: 12
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: May 1, 2013
%LOCALAPPDATA%\srxvutqi\bxpiftay.exe File name: bxpiftay.exe
Size: 221.18 KB (221184 bytes)
MD5: 029005e6c6cee5c5db6ca03ebbea2219
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\srxvutqi
Group: Malware file
Last Updated: April 16, 2013
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\1626e07c70e94a2a0f3a1e5f21a72c1e.exe File name: 1626e07c70e94a2a0f3a1e5f21a72c1e.exe
Size: 134.14 KB (134144 bytes)
MD5: c97d8ef40e10f6f7bc4cb9411d56fd95
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: May 29, 2018
%USERPROFILE%\mkj9933l2yi38.exe File name: mkj9933l2yi38.exe
Size: 155.64 KB (155648 bytes)
MD5: ff2da4b4191eac7f276d80d2b391e35a
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: May 4, 2020
%TEMP%\tx.exe File name: tx.exe
Size: 221.18 KB (221184 bytes)
MD5: 6dbaee9e778cbe078a13c3d52f75bd7d
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: April 16, 2013
%SystemDrive%\Users\<username>\AppData\Roaming\AltShell.dat File name: AltShell.dat
Size: 31.74 KB (31744 bytes)
MD5: 8bcf11899a6f68e25710ba49c469b728
Detection count: 5
File type: Data file
Mime Type: unknown/dat
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: April 16, 2013
%ALLUSERSPROFILE%\Ssam.exe File name: Ssam.exe
Size: 40.96 KB (40960 bytes)
MD5: f793d9762275db2e6e15c81215e1d540
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: May 13, 2013
file.exe File name: file.exe
Size: 147.53 KB (147533 bytes)
MD5: 93102d22a391e76a1b275ae32bac74d4
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: April 21, 2016
%APPDATA%\Blowfish.dll File name: Blowfish.dll
Size: 69.63 KB (69632 bytes)
MD5: 5411d107a5894f765a877d6582dd6646
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: June 1, 2016

More files

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%APPDATA%\Arrays.dll%APPDATA%\Blowfish.dll%APPDATA%\firefox.exe%appdata%\framework.exe%APPDATA%\Microsoft\Protect\SETUP\mscaps.exe%APPDATA%\Microsoft\taskhostw.exe%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\Schosts.exe%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\w10memchk.exe%LOCALAPPDATA%\Google\Update\gupdate.exe%LOCALAPPDATA%\svcs.exe%UserProfile%\Local Settings\Application Data\svcs.exe%WINDIR%\System32\mscaps.exe%WINDIR%\SysWOW64\mscaps.exe
Loading...