Home Malware Programs Trojans Scar

Scar

Posted: December 1, 2009

Threat Metric

Ranking: 10,896
Threat Level: 8/10
Infected PCs: 24,330
First Seen: December 1, 2009
Last Seen: February 16, 2025
OS(es) Affected: Windows

Scar is a Trojan that invades your system and may perform multiple damaging functions. Scar can function as a Trojan downloader f, installing additional malware on a targeted computer or as a launcher for another threatening program, which will be downloaded with Scar. Scar can be detected by numerous names, depending on the security program that found it.

When inside a computer, the affected users will start noticing the presence of various malware kinds since these harmful applications' actions will interfere with the good performance of the device. Every malware consumes large quantities of the machine's resources.

If you notice any symptoms that are pointing to the presence of this threatening Trojan, scan your computer with a trustable malware removal product to get rid of Scar as soon as possible.

Aliases

BackDoor.Generic13.FSD [AVG]Backdoor.Win32.Beastdoor [Ikarus]BehavesLike.Win32.Malware.eah (mx-v) [Sunbelt]Win-Trojan/Antisb.190976.F [AhnLab-V3]Trojan/Win32.Agent [Antiy-AVL]Win32/Spyrat.B [eTrust-Vet]Heuristic.BehavesLike.Win32.CodeInjection.A [McAfee-GW-Edition]BDS/Hupigon.Gen [AntiVir]BackDoor.IRC.Bot.355 [DrWeb]Heur.Packed.Unknown [Comodo]Mal/Inject-K [Sophos]Gen:Trojan.Heur.DP.lGW@auEp90k [BitDefender]Trojan.Win32.Scar.cwlm [Kaspersky]Trojan.Hupigon-28458 [ClamAV]Win32:Delf-NSG [Avast]
More aliases (235)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%USERPROFILE%\.COMMgr\complmgr.exe File name: complmgr.exe
Size: 526.84 KB (526848 bytes)
MD5: d16fde2a71a2c2d1b1c27aaa7aa1c19d
Detection count: 2,293
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\.COMMgr
Group: Malware file
Last Updated: September 7, 2010
%SYSTEMDRIVE%\Users\<username>\AppData\RDB\Registrytasksys.exe File name: Registrytasksys.exe
Size: 2.99 MB (2998272 bytes)
MD5: 3a78e14c10d9c6bbaa0f82fe9e4f1f9d
Detection count: 340
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\RDB\Registrytasksys.exe
Group: Malware file
Last Updated: June 26, 2020
%PROGRAMFILES(x86)%\svhosts\svhosts.exe File name: svhosts.exe
Size: 1.03 MB (1034752 bytes)
MD5: e4b3aea8d33392e62074c28cfa612864
Detection count: 166
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\svhosts
Group: Malware file
Last Updated: March 3, 2017
%WINDIR%\cidrive32.exe File name: cidrive32.exe
Size: 110.59 KB (110592 bytes)
MD5: 195fa4f072ae31762f85c40a2ee6a5bc
Detection count: 110
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: October 27, 2010
sbrv.exe File name: sbrv.exe
Size: 30.2 KB (30208 bytes)
MD5: 37bff5de2a6e2427ffbb560cb29aedc2
Detection count: 91
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
MsnSys.exe File name: MsnSys.exe
Size: 257.53 KB (257536 bytes)
MD5: 41370853604d9a264be09b832079d75d
Detection count: 91
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: April 6, 2010
winservice.exe File name: winservice.exe
Size: 142.33 KB (142336 bytes)
MD5: 84c87990ad010374b94e6b2f341fa93a
Detection count: 91
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: May 18, 2010
upd5te.exe File name: upd5te.exe
Size: 170.49 KB (170497 bytes)
MD5: f14cb109d722c76cd0971163133443f4
Detection count: 90
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: April 6, 2010
svchosts.exe File name: svchosts.exe
Size: 11.26 KB (11264 bytes)
MD5: 9db833fc8dfbc9193cb6062a74111834
Detection count: 86
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: August 12, 2010
%WINDIR%\svc3.exe File name: svc3.exe
Size: 210.81 KB (210810 bytes)
MD5: fa63d6a190000eb86882bfbd832628d1
Detection count: 82
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: October 27, 2010
%USERPROFILE%\Pictures\hоst.exe File name: hоst.exe
Size: 16.89 KB (16896 bytes)
MD5: 6d7a5094f62d6959c67b4f75925290fa
Detection count: 77
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Pictures
Group: Malware file
Last Updated: September 21, 2017
%APPDATA%\QSound\lcass.exe File name: lcass.exe
Size: 297.98 KB (297984 bytes)
MD5: 1e0321b04b5f23034f1e26f7f13aca7a
Detection count: 54
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\QSound
Group: Malware file
Last Updated: June 27, 2017
msvmcls64.exe File name: msvmcls64.exe
Size: 331.78 KB (331783 bytes)
MD5: 87a23f973c06a6a6dfdbb8be2aaf9f1c
Detection count: 50
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 1, 2010
%TEMP%\Realtek Audio\service.exe File name: service.exe
Size: 109.06 KB (109060 bytes)
MD5: 2890aca5d8222b516717d9adb64d2f24
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\Realtek Audio
Group: Malware file
Last Updated: March 25, 2017
%APPDATA%\DCleaner\dcc.exe File name: dcc.exe
Size: 5.03 MB (5032448 bytes)
MD5: 656f4950afd11aaced8a0b5176664da5
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\DCleaner
Group: Malware file
Last Updated: July 14, 2017
mKktGSz.exe File name: mKktGSz.exe
Size: 56.83 KB (56832 bytes)
MD5: 2e92c553f68ecb32e62f356c9a6c1c98
Detection count: 25
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: June 29, 2010
pV3lLnr.exe File name: pV3lLnr.exe
Size: 55.29 KB (55296 bytes)
MD5: aaac5bd36fa8411b71937c6d4bf4efad
Detection count: 24
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: May 28, 2010
regedit.exe File name: regedit.exe
Size: 227.32 KB (227328 bytes)
MD5: 614f02e2726bf102bd5edf242702747a
Detection count: 24
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: June 29, 2010
kernel32.exe File name: kernel32.exe
Size: 936.77 KB (936770 bytes)
MD5: e3a7e0b3a43504ac628b91de92184644
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: May 28, 2010
C:\P\ircphate.exe File name: ircphate.exe
Size: 61.95 KB (61957 bytes)
MD5: a8985956600aa94b572a8b7d2b0463e3
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: C:\P
Group: Malware file
Last Updated: October 27, 2010

More files

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%APPDATA%\AudioClient.exe%APPDATA%\DCleaner\dcc.exe%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\winupsvccfg.exe%APPDATA%\XWinCore\wincore.exe%APPDATA%\ZWinReg\winreg.exe%HOMEDRIVE%\Config.Msi\5ce97.rbf.exe%TEMP%\Realtek Audio\service.exe%WINDIR%\windowsmp.exe

Additional Information

The following directories were created:
%APPDATA%\XWinDat%APPDATA%\mxmetamux

Related Posts

Loading...