Home Malware Programs Trojans Oficla.AB

Oficla.AB

Posted: December 1, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 152
First Seen: December 1, 2010
OS(es) Affected: Windows

Aliases

Trojan.Win32.Vundo.j (v) [Sunbelt]Trojan/Win32.CSon [AhnLab-V3]Trojan.Popuper.37689 [DrWeb]a variant of Win32/Adware.Virtumonde.NHA [NOD32]Win32/TrojanProxy.Agent.NGL [NOD32]Generic19.NCC [AVG]W32/MultiDL.C!tr.dldr [Fortinet]LooksLike.Win32.Malware!D (v) [Sunbelt]Trojan/Win32.FakeAV [AhnLab-V3]Backdoor/Win32.Bredolab.gen [Antiy-AVL]Win32/DesktopSecurity2010.AJ [eTrust-Vet]Artemis!79F17F3B1901 [McAfee-GW-Edition]TR/Crypt.XPACK.Gen3 [AntiVir]Trojan.DownLoader1.5932 [DrWeb]MalCrypt.Indus! [Comodo]
More aliases (55)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\ejqg.qqo File name: ejqg.qqo
Size: 21.5 KB (21504 bytes)
MD5: 0f085feb74546ffebcc7d914912c66de
Detection count: 98
Mime Type: unknown/qqo
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 1, 2010
%TEMP%\m.2769D.tmp.exe File name: m.2769D.tmp.exe
Size: 2.75 MB (2754560 bytes)
MD5: 79f17f3b1901d355f068d54f3b9bdfb8
Detection count: 74
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 6, 2010
ejqg.qqo File name: ejqg.qqo
Size: 21.5 KB (21504 bytes)
MD5: e49b3fee34253b4fdad88b4dcace73c8
Detection count: 37
Mime Type: unknown/qqo
Group: Malware file
Last Updated: December 1, 2010
ifstream.dll File name: ifstream.dll
Size: 57.34 KB (57344 bytes)
MD5: 4568d75e152182f03c8a17182eb3334c
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 6, 2010
%WINDIR%\system32\nnkhed.dll File name: nnkhed.dll
Size: 105.98 KB (105984 bytes)
MD5: 0baf1ebfeaa8542db4cb7f890263fbfc
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 6, 2010
Loading...