Home Malware Programs Spyware Rootkit.Agent

Rootkit.Agent

Posted: July 24, 2009

Threat Metric

Ranking: 16,644
Threat Level: 6/10
Infected PCs: 885
First Seen: July 24, 2009
Last Seen: August 18, 2023
OS(es) Affected: Windows

Aliases

TROJ_DROPR.ST [TrendMicro]Troj/Pushu-Gen [Sophos]Trj/Kobcka.B [Panda]VirTool:WinNT/Cutwail.gen!E [Microsoft]Heuristic.LooksLike.Trojan.Crypt.H [McAfee-GW-Edition]Generic Rootkit.w [McAfee]Rootkit.Win32.Agent.ikz [Kaspersky]W32/Pushu.IKZ!tr [Fortinet]Win32.TRCrypt.Xdr [eSafe]Trojan.NtRootKit.2763 [DrWeb]TrojWare.Win32.Rootkit.Agent.~GF [Comodo]Rootkit.Agent.ikz [CAT-QuickHeal]Rootkit.Kobcka.C [BitDefender]Rootkit-Agent.CW [AVG]W32/Agent.HGD [Authentium]
More aliases (112)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



10701bea.sys File name: 10701bea.sys
Size: 102.63 KB (102632 bytes)
MD5: f3851144c8d4635cc08d627862849600
Detection count: 80
File type: System file
Mime Type: unknown/sys
Group: Malware file
Last Updated: December 11, 2009
ati64si.sys File name: ati64si.sys
Size: 41.21 KB (41216 bytes)
MD5: 1e57a2fad80fefd83ff7042485287c8d
Detection count: 33
File type: System file
Mime Type: unknown/sys
Group: Malware file
Last Updated: December 11, 2009
tni30.tmp File name: tni30.tmp
Size: 99.32 KB (99328 bytes)
MD5: 88cc834817320396f8554de1ae2f7f53
Detection count: 33
File type: Temporary File
Mime Type: unknown/tmp
Group: Malware file
Last Updated: December 11, 2009
tni92.tmp File name: tni92.tmp
Size: 99.07 KB (99072 bytes)
MD5: bb493849932c31482287001285c0bfbe
Detection count: 24
File type: Temporary File
Mime Type: unknown/tmp
Group: Malware file
Last Updated: December 11, 2009
c:\Users\<username>\appdata\roaming\drv.sys File name: drv.sys
Size: 5.12 KB (5120 bytes)
MD5: 145a50d309bc9397baabf707aa396d4e
Detection count: 14
File type: System file
Mime Type: unknown/sys
Path: c:\Users\<username>\appdata\roaming
Group: Malware file
Last Updated: February 7, 2020
%WINDIR%\system32\drivers\ksi32sk.sys File name: ksi32sk.sys
Size: 30.46 KB (30464 bytes)
MD5: 525cbf77044dbcfe300b64b33cbfee2a
Detection count: 12
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\system32\drivers
Group: Malware file
Last Updated: October 28, 2010

Additional Information

The following directories were created:
%PROGRAMFILES%\qdcomsvc%PROGRAMFILES(x86)%\qdcomsvc

Related Posts

Loading...