Home Malware Programs Backdoors Pontoeb.G

Pontoeb.G

Posted: July 18, 2011

Threat Metric

Threat Level: 6/10
Infected PCs: 347
First Seen: July 18, 2011
OS(es) Affected: Windows

Aliases

Trojan.SuspectCRC [Ikarus]Trojan/win32.agent.gen [Antiy-AVL]TR/Spy.Agent.32768 [AntiVir]Gen:Heur.MSIL.Krypt.4 [BitDefender]a variant of MSIL/Restamdos.AA [NOD32]Artemis!A98FAD1AFAAF [McAfee]Trojan.DownLoader5.18623 [DrWeb]Artemis!A8DE2016E5FA [McAfee]BackDoor.Cythosia.2 [DrWeb]Mal/Boom105-A [Sophos]Artemis!EE4C84E6CEB2 [McAfee]Trj/Agent.MIZ [Panda]BackDoor.Cythosia.1 [DrWeb]Win32:Trojan-gen [Avast]Backdoor.Trojan [Symantec]
More aliases (133)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\app\rundll.exe File name: rundll.exe
Size: 27.64 KB (27648 bytes)
MD5: ee4c84e6ceb260cab17cadce9d44d38e
Detection count: 112
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\app
Group: Malware file
Last Updated: March 7, 2013
%TEMP%\SysFld.exe File name: SysFld.exe
Size: 11.26 KB (11264 bytes)
MD5: e3854654079453fe58e42dbe75154c31
Detection count: 59
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: January 29, 2013
%APPDATA%\Wb\wb.exe File name: wb.exe
Size: 27.64 KB (27648 bytes)
MD5: 423cf65bd8f49126cfc39eed8d5db7d3
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Wb
Group: Malware file
Last Updated: November 1, 2011
%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Startup\BUILDED.EXE File name: BUILDED.EXE
Size: 28.16 KB (28160 bytes)
MD5: 9d0a45b9b9391c01ec57228094593b37
Detection count: 19
File type: Executable File
Mime Type: unknown/EXE
Path: %ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: October 5, 2012
%APPDATA%\sysfil\winextend.exe File name: winextend.exe
Size: 27.64 KB (27648 bytes)
MD5: 69fd7b821e354240c266e1e35f23dad9
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\sysfil
Group: Malware file
Last Updated: October 5, 2012
%APPDATA%\123\123.exe File name: 123.exe
Size: 27.64 KB (27648 bytes)
MD5: a8de2016e5fa4c2377ebf639bec05277
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\123
Group: Malware file
Last Updated: April 2, 2013
%APPDATA%\Target Folder\svchost.exe File name: svchost.exe
Size: 27.64 KB (27648 bytes)
MD5: e7838fc82207f2f0efc48d70b5a50107
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Target Folder
Group: Malware file
Last Updated: March 6, 2013
%WINDIR%\system32\audiohd.exe File name: audiohd.exe
Size: 26.11 KB (26112 bytes)
MD5: 20b92abda454bc10d42045b4b523f3ea
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 31, 2013
Loading...