Home Malware Programs Trojans PWSteal.Fareit.gen!I

PWSteal.Fareit.gen!I

Posted: January 28, 2013

Threat Metric

Threat Level: 8/10
Infected PCs: 365
First Seen: January 28, 2013
OS(es) Affected: Windows

Aliases

PSW.Generic10.BKPC [AVG]Trojan/Win32.Agent [AhnLab-V3]Mal/Zbot-KN [Sophos]TR/Rogue.kdz.5134 [AntiVir]Trojan-PSW.Win32.Tepfer.etip [Kaspersky]Win32:LockScreen-QE [Trj] [Avast]Trojan.Ransomlock!g36 [Symantec]Ransom!9E81F2914F7C [McAfee]Generic31.AGWR [AVG]TR/Zusy.33900.4 [AntiVir]Trojan.Win32.Jorik.Fareit.asm [Kaspersky]Ransom-FAXT!B8638376E1D5 [McAfee]TrojWare.Win32.Kryptik.ARJU [Comodo]Gen:Variant.Zusy.33900 [BitDefender]Trojan-PSW.Win32.Tepfer.ewsm [Kaspersky]
More aliases (130)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SystemDrive%\Users\<username>\AppData\Roaming\csrsss.exe File name: csrsss.exe
Size: 127.48 KB (127480 bytes)
MD5: 505be58b993a1f9b7656784bde35e851
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: February 14, 2013

More files
Loading...