Home Malware Programs Trojans HackTool:Win32/Patch.Q

HackTool:Win32/Patch.Q

Posted: May 10, 2013

Threat Metric

Threat Level: 8/10
Infected PCs: 857
First Seen: May 10, 2013
Last Seen: December 25, 2021
OS(es) Affected: Windows

Aliases

Suspicious file [Panda]Adware.W3i.24 [DrWeb]Artemis!4E4727ABB7EF [McAfee]Backdoor.Win32.Zegost [Ikarus]TR/Offend.7121018.2 [AntiVir]Packed:W32/PeCan.A [F-Secure]UnclassifiedMalware [Comodo]Artemis!6A0DEA77D63C [McAfee]Mal/Packer [Sophos]Heuristic.LooksLike.Win32.SuspiciousPE.N [McAfee-GW-Edition]Packed.Win32.MFSG.Gen [Comodo]Win32.PackedFSG.D [eSafe]W32/Heuristic-210!Eldorado [F-Prot]Artemis!79CB72A4200D [McAfee]Generic5.XAQ [AVG]
More aliases (131)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



G:\System Volume Information\_restore{C82E8CEA-6BBA-40C6-9AE2-EF5A1FE3707B}\RP100\A0043813.exe File name: A0043813.exe
Size: 9.51 MB (9518233 bytes)
MD5: 79cb72a4200d2eebefb3ec8dc2c8ea42
Detection count: 377
File type: Executable File
Mime Type: unknown/exe
Path: G:\System Volume Information\_restore{C82E8CEA-6BBA-40C6-9AE2-EF5A1FE3707B}\RP100\A0043813.exe
Group: Malware file
Last Updated: July 26, 2022
C:\Program Files (x86)\Your Uninstaller! 7\urmain.exe File name: urmain.exe
Size: 4.9 MB (4908544 bytes)
MD5: 55a442ed4f5ce0e3bd23e8cdf59123f0
Detection count: 241
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\Your Uninstaller! 7\urmain.exe
Group: Malware file
Last Updated: January 26, 2023
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\mshell.exe File name: mshell.exe
Size: 16.38 KB (16384 bytes)
MD5: c4b4fe91fa56e06bd87da86e1f1aea35
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: May 13, 2013
c:\program files\nxtech\nxsub.exe File name: nxsub.exe
Size: 94.27 KB (94275 bytes)
MD5: 464f20dfbc3ad487b8a951c2ecdf99e5
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: c:\program files\nxtech\nxsub.exe
Group: Malware file
Last Updated: December 25, 2021
D:\ComboFix.exe File name: ComboFix.exe
Size: 3.83 MB (3839056 bytes)
MD5: 24e4f513fae96cfc12a3cc7ea2b79058
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: D:
Group: Malware file
Last Updated: May 13, 2013
%LOCALAPPDATA%\Leadertech\ohxserrz.dll File name: ohxserrz.dll
Size: 765.44 KB (765440 bytes)
MD5: abd201a4d24987805ee45a1590db623b
Detection count: 10
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Leadertech
Group: Malware file
Last Updated: May 13, 2013
%PROGRAMFILES%\Zentimo\Zentimo.exe File name: Zentimo.exe
Size: 3.74 MB (3742348 bytes)
MD5: 6a0dea77d63c8055077766f6008441c1
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Zentimo
Group: Malware file
Last Updated: May 13, 2013
%USERPROFILE%\Local Settings\Application Data\PCTools\uyzuaoai.dll File name: uyzuaoai.dll
Size: 782.33 KB (782336 bytes)
MD5: ebbf62059e030a356f285b6d8b275fc9
Detection count: 6
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\Local Settings\Application Data\PCTools
Group: Malware file
Last Updated: May 13, 2013
Loading...