Home Malware Programs Backdoors Kelihos.B

Kelihos.B

Posted: April 8, 2011

Threat Metric

Threat Level: 6/10
Infected PCs: 1,937
First Seen: April 8, 2011
OS(es) Affected: Windows

Aliases

Generic26.EJO [AVG]Heuristic.LooksLike.Win32.Suspicious.E [McAfee-GW-Edition]Trojan.Generic.KD.561483 [BitDefender]Packed.Win32.Krap.is [Kaspersky]a variant of Win32/Kryptik.ACID [NOD32]Backdoor.Bredolab.zji [CAT-QuickHeal]Cryptic.DQC [AVG]TR/Agent.ghs [AntiVir]BackDoor.Slym.24 [DrWeb]Gen:Variant.Kazy.31534 [BitDefender]Trojan.Win32.Jorik.Hlux.do [Kaspersky]Win32:MalOb-GZ [Cryp] [Avast]W32/FakeAlert.QS.gen!Eldorado [F-Prot]a variant of Win32/Kryptik.SKS [NOD32]Trojan.Jorik.Hlux.do [CAT-QuickHeal]
More aliases (551)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%USERPROFILE%\wobfud.exe File name: wobfud.exe
Size: 143.36 KB (143360 bytes)
MD5: b322786c0e515f38222bc4a9c88783e9
Detection count: 91
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: June 13, 2011
%WINDIR%\gn510vh0.exe File name: gn510vh0.exe
Size: 887.29 KB (887296 bytes)
MD5: b8c6e52cf44b86472bcdb1e3db315603
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: October 5, 2012
%WINDIR%\TEMP\pfnqggrf.exe File name: pfnqggrf.exe
Size: 880.64 KB (880640 bytes)
MD5: ca9a3e70e6a60d2686f5091f13d80d3a
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: October 25, 2011
%WINDIR%\Temp\fj4tne.exe File name: fj4tne.exe
Size: 893.44 KB (893440 bytes)
MD5: 0df59a7ff7dacdc723204fdfb0e156d7
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Temp
Group: Malware file
Last Updated: September 14, 2012
%WINDIR%\Temp\_ex-08.exe File name: _ex-08.exe
Size: 652.28 KB (652288 bytes)
MD5: 7e4f4537cfd5d1f9292c0587159b70aa
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Temp
Group: Malware file
Last Updated: June 6, 2011
%WINDIR%\Temp\_ex-68.exe File name: _ex-68.exe
Size: 889.34 KB (889344 bytes)
MD5: 79c282e2312c0fc1bdbc6a2869a62dd8
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Temp
Group: Malware file
Last Updated: November 22, 2012
%WINDIR%\Temp\eaa3d.exe File name: eaa3d.exe
Size: 665.6 KB (665600 bytes)
MD5: 561b45636e39558bbc5305dd25dd946c
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Temp
Group: Malware file
Last Updated: January 16, 2012
%WINDIR%\c28.exe File name: c28.exe
Size: 886.27 KB (886272 bytes)
MD5: f62590fb8659a37d982ee0853ab36e8e
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: July 20, 2012
%WINDIR%\Temp\cy2o4e1.exe File name: cy2o4e1.exe
Size: 817.15 KB (817152 bytes)
MD5: a28262b8150f0d62b409771966fd76ef
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Temp
Group: Malware file
Last Updated: November 16, 2012

More files
Loading...