Home Malware Programs Trojans HackTool:Win32/Havis

HackTool:Win32/Havis

Posted: December 19, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 1,012
First Seen: December 19, 2012
Last Seen: February 24, 2023
OS(es) Affected: Windows

Aliases

HackTool/Havij.A [Panda]HackTool.QHX [AVG]HackTool/Win32.SQLInject.gen [Antiy-AVL]SPR/Tool.Havis.1 [AntiVir]Tool.Siggen.7060 [DrWeb]TrojWare.Win32.HackTool.SQLInject.DX [Comodo]Troj/Havis-Gen [Sophos]HackTool.Win32.SQLInject.dx [Kaspersky]Hacktool [K7AntiVirus]Artemis!D9278593B633 [McAfee]HackTool.SQLInject.dx (Not a Virus) [CAT-QuickHeal]W32/Kryptik.ALRY!tr [Fortinet]Trojan.Win32.Reveton [Ikarus]Troj/Ransom-LX [Sophos]Trojan-Ransom.Win32.Foreign.wiu [Kaspersky]
More aliases (265)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Program Files (x86)\netcut\netcut.exe File name: netcut.exe
Size: 417.79 KB (417792 bytes)
MD5: 192b4c8f65006b9398b716b73cd7b99e
Detection count: 248
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\netcut\netcut.exe
Group: Malware file
Last Updated: December 21, 2022
%TEMP%\00dcceac.exe File name: 00dcceac.exe
Size: 968.37 KB (968375 bytes)
MD5: e503b6e7c5efe64bbb349e3b1fce3756
Detection count: 81
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 20, 2012
%SystemDrive%\Users\<username>\AppData\Roaming\1.exe File name: 1.exe
Size: 503.82 KB (503824 bytes)
MD5: 1266e7ee8a47ff31bb95ecd0b6bb5942
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: December 20, 2012
%USERPROFILE%\Local Settings\Application Data\Synaptics\qpwroazp.dll File name: qpwroazp.dll
Size: 297.98 KB (297984 bytes)
MD5: e954c55b885eb916be1f4ceb6d3d57c7
Detection count: 43
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\Local Settings\Application Data\Synaptics
Group: Malware file
Last Updated: December 24, 2012
%LOCALAPPDATA%\cheerychickenSA\mqiazsvy.dll File name: mqiazsvy.dll
Size: 450.56 KB (450560 bytes)
MD5: 63a0172a29dcb5a13a6c25e986c5805d
Detection count: 32
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\cheerychickenSA
Group: Malware file
Last Updated: December 27, 2012
%APPDATA%\Microsoft\Windows\AdvService.exe File name: AdvService.exe
Size: 425.98 KB (425984 bytes)
MD5: 54f8d3e0fb468459c4d1f60e7e661216
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows
Group: Malware file
Last Updated: December 20, 2012
%APPDATA%\5C32.exe File name: 5C32.exe
Size: 94.2 KB (94208 bytes)
MD5: 2c7b2f7b68609174f8769abcd716c93e
Detection count: 24
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 20, 2012
%WINDIR%\system32\monitor.exe File name: monitor.exe
Size: 8.19 KB (8192 bytes)
MD5: 555ec932024867b090810a7c9c52aff5
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 20, 2012
D:\Program Files\Total Commander PowerUser\ProgrammPlus\Network\AdMuncher\Updater.exe File name: Updater.exe
Size: 405.55 KB (405555 bytes)
MD5: 9091572d76b86969082ecddd25c8148f
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: D:\Program Files\Total Commander PowerUser\ProgrammPlus\Network\AdMuncher
Group: Malware file
Last Updated: December 20, 2012
%USERPROFILE%\wgsdgsdgdsgsd.dll File name: wgsdgsdgdsgsd.dll
Size: 185.72 KB (185720 bytes)
MD5: 00ec1bdfc806bf0860b8ade0034fa0ca
Detection count: 19
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%
Group: Malware file
Last Updated: December 24, 2012
%PROGRAMFILES(x86)%\topnews\topnews.exe File name: topnews.exe
Size: 126.97 KB (126976 bytes)
MD5: b23324cba4d0308eff6a5114b8af5bf2
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\topnews
Group: Malware file
Last Updated: December 24, 2012
%LOCALAPPDATA%\WideSearch\wsearch.exe File name: wsearch.exe
Size: 1.32 MB (1327104 bytes)
MD5: ae5efaa214e818017f398cc3ac4e64b1
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\WideSearch
Group: Malware file
Last Updated: December 20, 2012
%LOCALAPPDATA%\Microsoft\Windows\2907\wwancfg.exe File name: wwancfg.exe
Size: 107.52 KB (107520 bytes)
MD5: c4535841ddcafddbb9de5a8a2cc16342
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\Microsoft\Windows\2907
Group: Malware file
Last Updated: December 24, 2012
%TEMP%\0001a851.exe File name: 0001a851.exe
Size: 1.17 MB (1170191 bytes)
MD5: 7f0888ae7f094273d1a6b7ebabfa11c5
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 20, 2012
%PROGRAMFILES(x86)%\cloudpop\cloudpop_.exe File name: cloudpop_.exe
Size: 536.96 KB (536968 bytes)
MD5: d23db8dd79ba96652f03e56f9b9082de
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\cloudpop
Group: Malware file
Last Updated: December 24, 2012
%SystemDrive%\Users\<username>\AppData\Roaming\64E070\64E070.exe File name: 64E070.exe
Size: 54.93 KB (54936 bytes)
MD5: d524f7970cc729e47d14d2631e7eddf0
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming\64E070
Group: Malware file
Last Updated: December 27, 2012
Loading...