Home Malware Programs Trojans Remhead

Remhead

Posted: October 7, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 984
First Seen: October 7, 2010
Last Seen: November 8, 2021
OS(es) Affected: Windows

Aliases

unknown virus Win32/DH{UE8VURxTTQ} [AVG]W32/Injector.fam!tr [Fortinet]Trojan-Dropper.Win32.Appis [Ikarus]Dropper/Win32.Appis [AhnLab-V3]Heuristic.LooksLike.Win32.Suspicious.F!89 [McAfee-GW-Edition]DR/Delphi.Gen [AntiVir]Trojan.DownLoad1.58959 [DrWeb]Trojan-Dropper.Win32.Appis.o [Kaspersky]Win32.DRDelphi [eSafe]Artemis!7D9935DE083E [McAfee]Agent3.BHIZ [AVG]W32/Agent2.MEA!tr [Fortinet]Trojan.Win32.Agent [Ikarus]TR/VB.Krypt.QL [AntiVir]Trojan.Win32.Agent2.mea [Kaspersky]
More aliases (936)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\9BE5.exe File name: 9BE5.exe
Size: 85.5 KB (85504 bytes)
MD5: 36e36a30a983d396289212d53d3ec599
Detection count: 95
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: February 22, 2013
d:\Documents and Settings\tamkash\Application Data\option glue base\FlagAmenHeck.exe File name: FlagAmenHeck.exe
Size: 274.43 KB (274432 bytes)
MD5: 3b20257b7c0c68ffc8b72396bea02bdc
Detection count: 85
File type: Executable File
Mime Type: unknown/exe
Path: d:\Documents and Settings\tamkash\Application Data\option glue base
Group: Malware file
Last Updated: December 16, 2010
%SystemDrive%\Recycle.Bin\Recycle.Bin.exe File name: Recycle.Bin.exe
Size: 385.36 KB (385368 bytes)
MD5: 6c794d805de696ab80ed4a8646cae0d9
Detection count: 85
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Recycle.Bin
Group: Malware file
Last Updated: July 21, 2011
%APPDATA%\167C.exe File name: 167C.exe
Size: 98.3 KB (98304 bytes)
MD5: c5e61246ee9222495c4d0c3cc88feb58
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: March 6, 2013
C:\RECYCLER\S-1-5-21-3765758440-4832993452-430806413-8224\hdav.exe File name: hdav.exe
Size: 153.08 KB (153088 bytes)
MD5: cbddc854aca05d5e3bcb5449bf1032fa
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-3765758440-4832993452-430806413-8224
Group: Malware file
Last Updated: November 30, 2010
C:\Users\<username>\Documents\HERMES\C\Users\<username>\AppData\Roaming\A9D5.exe File name: A9D5.exe
Size: 106.49 KB (106496 bytes)
MD5: 41328d4112b47abe5f9b580d1c456c61
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Documents\HERMES\C\Users\<username>\AppData\Roaming\A9D5.exe
Group: Malware file
Last Updated: November 8, 2021
%APPDATA%\8A0B.exe File name: 8A0B.exe
Size: 106.49 KB (106496 bytes)
MD5: c93a6998d6d1dfa12314b3cbad45ce26
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: May 30, 2020
%APPDATA%\teco.exe File name: teco.exe
Size: 77.31 KB (77312 bytes)
MD5: cf8f9c802fe08b6f9bff729e7aa56ebf
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 18, 2012
%USERPROFILE%\M-1-25-8784-4125-7572\winsvc.exe File name: winsvc.exe
Size: 184.32 KB (184320 bytes)
MD5: 4e9303b8a42bdf0dfc6706201f4964ed
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\M-1-25-8784-4125-7572
Group: Malware file
Last Updated: December 24, 2012
%WINDIR%\system32\userzsrv.exe File name: userzsrv.exe
Size: 69.63 KB (69632 bytes)
MD5: 04be2a354cbce3cb5c4cbafe678cfdfd
Detection count: 25
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: March 29, 2013
%USERPROFILE%\objproxyadm.exe File name: objproxyadm.exe
Size: 148.99 KB (148992 bytes)
MD5: 0d706641364f599abc3cb5099f9f39c9
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: April 18, 2011
%LOCALAPPDATA%\2931181842012miner.exe File name: 2931181842012miner.exe
Size: 1.23 MB (1232520 bytes)
MD5: a15e2a3d17c6a65223fefc51e2a1d79d
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: November 12, 2012
%APPDATA%\87A6.exe File name: 87A6.exe
Size: 94.2 KB (94208 bytes)
MD5: 34f794506b1f141a35af7f954cb13f82
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: February 22, 2013
%PUBLIC%\HEX-5823-6893-6818\jutched.exe File name: jutched.exe
Size: 115.71 KB (115712 bytes)
MD5: d237f4b46c9123d29339c0d244e6f4ab
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%\HEX-5823-6893-6818
Group: Malware file
Last Updated: January 16, 2011
C:\dir\install\install\install\svchost.exe File name: svchost.exe
Size: 2.03 MB (2039850 bytes)
MD5: e53cdb1b2fcaef11999e0a7eab6b08e1
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: C:\dir\install\install\install
Group: Malware file
Last Updated: November 30, 2010
%APPDATA%\5CFE.exe File name: 5CFE.exe
Size: 186.88 KB (186880 bytes)
MD5: 19e1959db53cd16839bce98c0ac866fa
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: May 15, 2020
%USERPROFILE%\My Documents\systempack107_2222.exe File name: systempack107_2222.exe
Size: 404.48 KB (404480 bytes)
MD5: b1f3f8d6c8fb47392e22e09d41a0cf59
Detection count: 6
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\My Documents
Group: Malware file
Last Updated: January 16, 2011
%ALLUSERSPROFILE%\Datos de programa\nKWAJl4M.exe File name: nKWAJl4M.exe
Size: 77.82 KB (77826 bytes)
MD5: 86840980228d3705684f09fb4758f32e
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Datos de programa
Group: Malware file
Last Updated: February 16, 2011
%APPDATA%\C6BA.exe File name: C6BA.exe
Size: 110.7 KB (110702 bytes)
MD5: 6cff7d1f06aa1ce4e0ffa8fccd202319
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: January 23, 2013
%SystemDrive%\Users\<username>\AppData\Roaming\skype.dat File name: skype.dat
Size: 132.6 KB (132608 bytes)
MD5: 5428cf992638aff75f85e7355d710cf3
Detection count: 5
File type: Data file
Mime Type: unknown/dat
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: March 29, 2013

More files

Related Posts

Loading...