Home Malware Programs Trojans Extats.A

Extats.A

Posted: February 17, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 131
First Seen: February 17, 2011
OS(es) Affected: Windows

Aliases

W32/Banker.BGGV!tr [Fortinet]TR/Banker.Banker.bggv [AntiVir]Trojan.DownLoader2.2933 [DrWeb]Trojan-Banker.Win32.Banker.bggv [Kaspersky]a variant of Win32/Injector.ERN [NOD32]Artemis!65FE3D4C5992 [McAfee]TrojanBanker.Banker.bggv [CAT-QuickHeal]Downloader/Win32.Lofog [AhnLab-V3]TR/Kazy.13759.1 [AntiVir]BackDoor.Siggen.28407 [DrWeb]Gen:Variant.Kazy.13759 [BitDefender]a variant of Win32/Kryptik.LAI [NOD32]Riskware [K7AntiVirus]Artemis!8760B96DCBD7 [McAfee]Cryptic.CFZ [AVG]
More aliases (157)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\xaxv3l3hyswxbziqxdoyr2s1p2qolpxy2\svcnost.exe File name: svcnost.exe
Size: 90.11 KB (90112 bytes)
MD5: f97c533222eb886735dd841819884548
Detection count: 50
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\xaxv3l3hyswxbziqxdoyr2s1p2qolpxy2
Group: Malware file
Last Updated: April 20, 2011
%APPDATA%\xrditqjwynbcnll1qrcipbasjccxueo22\svcnost.exe File name: svcnost.exe
Size: 133.12 KB (133120 bytes)
MD5: 1eed38b695379dbb5f5b9e1299f3eabd
Detection count: 22
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\xrditqjwynbcnll1qrcipbasjccxueo22
Group: Malware file
Last Updated: March 21, 2011
%APPDATA%\xid1aeixqbsmgzvxsfxxscqiercfasy22\svcnost.exe File name: svcnost.exe
Size: 88.06 KB (88064 bytes)
MD5: 0fc0435b0dc98a67a0359b9455065eab
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\xid1aeixqbsmgzvxsfxxscqiercfasy22
Group: Malware file
Last Updated: February 19, 2011
%APPDATA%\xc2nednr3wgdjpwwwva1aokorbhsyzwh2\svcnost.exe File name: svcnost.exe
Size: 185.85 KB (185856 bytes)
MD5: 290f1cc9dceaab1aab561db75d933fc7
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\xc2nednr3wgdjpwwwva1aokorbhsyzwh2
Group: Malware file
Last Updated: April 4, 2011
%APPDATA%\x3ypgh1imfcubpbwxfdmgzs1geydnqwm2\svcnost.exe File name: svcnost.exe
Size: 86.01 KB (86016 bytes)
MD5: 252f5e45a3ab1e6c5ee953f5fd9b53d8
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\x3ypgh1imfcubpbwxfdmgzs1geydnqwm2
Group: Malware file
Last Updated: February 28, 2011
%APPDATA%\xqirgjvho3u3wgtcxya2srdn2tzmhpvc2\svcnost.exe File name: svcnost.exe
Size: 82.43 KB (82432 bytes)
MD5: 65fe3d4c5992a7fa87d1adae00175779
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\xqirgjvho3u3wgtcxya2srdn2tzmhpvc2
Group: Malware file
Last Updated: October 27, 2011
%APPDATA%\xbhicmq1mdt2wgmpy2zgozadguk2dpvd2\svcnost.exe File name: svcnost.exe
Size: 84.99 KB (84992 bytes)
MD5: 8760b96dcbd7ce8841592fd160ea8887
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\xbhicmq1mdt2wgmpy2zgozadguk2dpvd2
Group: Malware file
Last Updated: July 5, 2011
C:\mydnswatch\mydnswatch.exe File name: mydnswatch.exe
Size: 315.66 KB (315664 bytes)
MD5: 49b9ea0cf3c0677b92f2db6a6ae63c39
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: C:\mydnswatch
Group: Malware file
Last Updated: February 19, 2011
%APPDATA%\xbfmrhd2axir1jy1ztwkti2dyazk2oqh2\svcnost.exe File name: svcnost.exe
Size: 87.55 KB (87552 bytes)
MD5: e946b65ff10aa237f369620abfae9678
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\xbfmrhd2axir1jy1ztwkti2dyazk2oqh2
Group: Malware file
Last Updated: February 24, 2011
%APPDATA%\xcoba3pqklkc3soeabhkeucllumbgjvv2\svcnost.exe File name: svcnost.exe
Size: 154.62 KB (154624 bytes)
MD5: ed62fe10eff02b093c0f78ec197cdeed
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\xcoba3pqklkc3soeabhkeucllumbgjvv2
Group: Malware file
Last Updated: March 14, 2011
%APPDATA%\xnqvwscit1tglhxxtwura12bppexqrox2\svcnost.exe File name: svcnost.exe
Size: 91.13 KB (91136 bytes)
MD5: a9b8d46f140ec330fae90b7d16dbc50e
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\xnqvwscit1tglhxxtwura12bppexqrox2
Group: Malware file
Last Updated: April 4, 2011
Loading...