Home Malware Programs Trojans HackTool:WinNT/Tcpz.B

HackTool:WinNT/Tcpz.B

Posted: July 14, 2011

Threat Metric

Ranking: 16,716
Threat Level: 8/10
Infected PCs: 349
First Seen: July 14, 2011
Last Seen: October 10, 2023
OS(es) Affected: Windows

Aliases

Win32/Pupil.A [AVG]Possible_Virus [TrendMicro]Mal/BankSpy-C [Sophos]TR/Crypt.FKM.Gen [AntiVir]TrojWare.Win32.Spy.Banker.Gen [Comodo]W32/Themida_Packed!Eldorado [F-Prot]Heur.Pck.Themida [Comodo]DeepScan:Generic.Banker.OT.433E674B [BitDefender]Packed.Win32.Klone [Ikarus]Dropper/Win32.OnlineGameHack [AhnLab-V3]PUA.Packed.ASPack [ClamAV]OneStepSearcher.AC [AVG]TR/Boigy.585729 [AntiVir]a variant of Win32/Adware.OneStep.AF [NOD32]Trj/CI.A__* [Panda]
More aliases (237)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\oz90560.dll File name: oz90560.dll
Size: 258.04 KB (258048 bytes)
MD5: 1f13a75b7f11085c3e6fc7ae91884e27
Detection count: 105
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: July 18, 2011
%WINDIR%\Help\taskcys.exe File name: taskcys.exe
Size: 3.31 MB (3319808 bytes)
MD5: 1074a5c5a2f60d8762309dce6d5cd257
Detection count: 75
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Help
Group: Malware file
Last Updated: July 29, 2011
%WINDIR%\System32\drivers\trs.sys File name: trs.sys
Size: 7.68 KB (7680 bytes)
MD5: 6f03810fe2a6f644f920c58a606b0af5
Detection count: 70
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: July 18, 2011
C:\HOME\rEvents.dll File name: rEvents.dll
Size: 452.05 KB (452050 bytes)
MD5: 74f7c7baab9d663a50893a513cf5b868
Detection count: 50
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\HOME
Group: Malware file
Last Updated: July 18, 2011
%WINDIR%\system32\drivers\krndv32.sys File name: krndv32.sys
Size: 11.62 KB (11624 bytes)
MD5: d5343be74351070f1e425c6ad894c7e8
Detection count: 31
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\system32\drivers
Group: Malware file
Last Updated: July 14, 2011
%ALLUSERSPROFILE%\QuestScan\questscan153.exe File name: questscan153.exe
Size: 26.11 KB (26112 bytes)
MD5: 54bb0dba85c4ae28e4bc800e09bc5327
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\QuestScan
Group: Malware file
Last Updated: July 18, 2011
%PROGRAMFILES%\NickWare CoreFaster Ultra\NWcfuTray.exe File name: NWcfuTray.exe
Size: 178.17 KB (178176 bytes)
MD5: fd52acf59611786175c22806e84bc3e1
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\NickWare CoreFaster Ultra
Group: Malware file
Last Updated: July 18, 2011
%USERPROFILE%\M-1-95-7484-7337-8453\winsvc.exe File name: winsvc.exe
Size: 143.36 KB (143360 bytes)
MD5: d943e935aa3209be7dd4a7de58310e20
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\M-1-95-7484-7337-8453
Group: Malware file
Last Updated: July 18, 2011
%WINDIR%\system32\arking.exe File name: arking.exe
Size: 206.84 KB (206848 bytes)
MD5: 642c2409b99e92c9c8bb9bb9c722eba4
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: July 21, 2011
Loading...