Home Malware Programs Trojans PWSteal.Tibia.BP

PWSteal.Tibia.BP

Posted: February 7, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 40
First Seen: February 7, 2012
OS(es) Affected: Windows

Aliases

W32/Agent.NHGM!tr [Fortinet]TR/Agent.nhgm [AntiVir]TrojWare.Win32.Agent.nhgm [Comodo]Mal/Generic-S [Sophos]Trojan.Win32.Agent.nhgm [Kaspersky]Win.Trojan.Agent-89566 [ClamAV]Artemis!1793B6C8A414 [McAfee]PSW.OnlineGames3.BRYM [AVG]W32/Agent.OFZR!tr [Fortinet]Trojan.Win32.Agent [Ikarus]TR/Gendal.kdv.301364 [AntiVir]Trojan.Siggen3.15468 [DrWeb]Gen:Variant.Delf.2 [BitDefender]Trojan.Win32.Agent.ofzr [Kaspersky]Win32.Trojan [eSafe]
More aliases (162)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%USERPROFILE%\Start Menu\Programs\Startup\wostock412.exe File name: wostock412.exe
Size: 920.57 KB (920576 bytes)
MD5: 8611715137598ccc4520686660376aab
Detection count: 95
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: December 24, 2012
%APPDATA%\20F2.exe File name: 20F2.exe
Size: 93.32 KB (93325 bytes)
MD5: df25eee901956aeb994c0ead50b49f67
Detection count: 95
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: February 13, 2012
%PROGRAMFILES%\SystemSpeedBooster\SystemSpeedBooster.exe File name: SystemSpeedBooster.exe
Size: 3.97 MB (3977456 bytes)
MD5: aa621c65c0f2ebbc89ce8e167179e8df
Detection count: 92
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\SystemSpeedBooster
Group: Malware file
Last Updated: February 13, 2012
%USERPROFILE%\Menu Start\Programy\Autostart\lua8.exe File name: lua8.exe
Size: 996.35 KB (996352 bytes)
MD5: 985757f91f4a82cd91ae67e0a7353ebb
Detection count: 51
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Menu Start\Programy\Autostart
Group: Malware file
Last Updated: January 28, 2013
%SystemDrive%\Software\services\bfsvc.exe File name: bfsvc.exe
Size: 995.49 KB (995497 bytes)
MD5: 66b033da2efb6b5a1f5a40a13549f2b1
Detection count: 32
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Software\services
Group: Malware file
Last Updated: February 13, 2012
%WINDIR%\system32\Gbas.dll File name: Gbas.dll
Size: 46.08 KB (46080 bytes)
MD5: 6e4b32f1fb1615762382719039846481
Detection count: 31
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: February 13, 2012
%TEMP%\ziiOJrYNTexUxld.exe File name: ziiOJrYNTexUxld.exe
Size: 821.24 KB (821248 bytes)
MD5: 98f5077865328c57dd24c827522722a8
Detection count: 25
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: February 13, 2012
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\lua7.exe File name: lua7.exe
Size: 1.05 MB (1056256 bytes)
MD5: 1793b6c8a41491b998c84d5a413b99f6
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: May 13, 2013

More files
Loading...