Home Malware Programs Trojans PWSteal.Fignotok.K

PWSteal.Fignotok.K

Posted: January 7, 2013

Threat Metric

Threat Level: 8/10
Infected PCs: 131
First Seen: January 7, 2013
OS(es) Affected: Windows

Aliases

W32/Tepfer.MQ!tr [Fortinet]TROJ_GEN.RCBCECN [TrendMicro]Trojan.Packed.2872 [DrWeb]TrojWare.Win32.Spy.ZBot.JTM [Comodo]Trojan.Win32.Yakes.cocc [Kaspersky]Packed.Mystic!gen11 [Symantec]PWS-Zbot-FAPH!199D42E06197 [McAfee]Dropper.Generic7.AMCJ [AVG]Heuristic.LooksLike.Win32.Suspicious.B [McAfee-GW-Edition]Trojan-Dropper.Win32.Injector.gxms [Kaspersky]Suspicion: unknown virus [AVG]Mal/MSIL-BF [Sophos]Gen:Variant.Barys.387 [BitDefender]Win32/Cryptor [AVG]W32/Kryptik.XUW!tr [Fortinet]
More aliases (141)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%USERPROFILE%istrator\Application Data\Protector-mgan.exe File name: Protector-mgan.exe
Size: 2.07 MB (2070016 bytes)
MD5: c7bbe770c187ddeeef55fe1709232502
Detection count: 45
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%istrator\Application Data
Group: Malware file
Last Updated: January 14, 2013
%WINDIR%\system32\6to4ex.dll File name: 6to4ex.dll
Size: 77.84 KB (77844 bytes)
MD5: 95152488dfaeac6687220306b2e28060
Detection count: 41
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 14, 2013
%USERPROFILE%\Start Menu\Programs\Startup\kaohe.exe File name: kaohe.exe
Size: 193.02 KB (193024 bytes)
MD5: e79af225418c7f42c0580a64312b4913
Detection count: 15
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: January 8, 2013
%APPDATA%\WindowsUpdate\WindowsUpdate.exe File name: WindowsUpdate.exe
Size: 28.67 KB (28672 bytes)
MD5: cd69b270913d25b14a8f1304e9d239a2
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\WindowsUpdate
Group: Malware file
Last Updated: January 14, 2013
%TEMP%\taskman.exe File name: taskman.exe
Size: 849.4 KB (849408 bytes)
MD5: 2559673c1677cace8a1a3563788f3b0c
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: January 14, 2013
%WINDIR%\adsclick.exe File name: adsclick.exe
Size: 45.05 KB (45056 bytes)
MD5: c5ad719bf8a08111fd4a299318007bd0
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: January 14, 2013
%ALLUSERSPROFILE%\2E19574274AE9F2100002E192931A77D\avapro.exe File name: avapro.exe
Size: 420.86 KB (420864 bytes)
MD5: 199d42e0619743c3e477e19b4114fe65
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\2E19574274AE9F2100002E192931A77D
Group: Malware file
Last Updated: March 29, 2013
Loading...