Home Malware Programs Backdoors Tofsee.F

Tofsee.F

Posted: July 24, 2009

Threat Metric

Threat Level: 8/10
Infected PCs: 152
First Seen: July 24, 2009
Last Seen: September 29, 2021
OS(es) Affected: Windows

Aliases

Generic7_c.AT [AVG]W32/Scarsi.PEK!tr [Fortinet]TR/Rogue.KD.817490 [AntiVir]Trojan.Win32.Scarsi.pek [Kaspersky]Generic BackDoor!fp3 [McAfee]Trojan.Scarsi.pek [CAT-QuickHeal]Generic31.QTE [AVG]W32/Scarsi.QAD!tr [Fortinet]Spyware/Win32.Zbot [AhnLab-V3]BDS/Tofsee.F.139 [AntiVir]Trojan.Win32.Scarsi.qad [Kaspersky]PWS-Zbot-FAHQ!99349E6375C9 [McAfee]Trj/OCJ.D [Panda]Agent4.WJA [AVG]W32/Inject.FALG!tr [Fortinet]
More aliases (665)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%USERPROFILE%\ucew.exe File name: ucew.exe
Size: 56.19 KB (56192 bytes)
MD5: 54934990bbf0f05a3a3465ace20af7d2
Detection count: 90
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: January 29, 2013
%USERPROFILE%\dmx.exe File name: dmx.exe
Size: 115.2 KB (115200 bytes)
MD5: 1766af6bde1df07427884c8f4237cd3d
Detection count: 85
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: December 11, 2012
%USERPROFILE%\ppyxjvik.exe File name: ppyxjvik.exe
Size: 106.49 KB (106496 bytes)
MD5: 4e0bc9bf58f4c61e70255f0e1ef21101
Detection count: 83
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: January 5, 2013
%USERPROFILE%\ivscjcqv.exe File name: ivscjcqv.exe
Size: 140.8 KB (140800 bytes)
MD5: c1e84a52afd3fd201198a64825d2a272
Detection count: 83
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: February 11, 2013
%USERPROFILE%\krsgxn.exe File name: krsgxn.exe
Size: 159.23 KB (159232 bytes)
MD5: 2117559273c5f1857826869fe5b96f39
Detection count: 62
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: October 22, 2012
%USERPROFILE%\qqzykwjl.exe File name: qqzykwjl.exe
Size: 159.74 KB (159744 bytes)
MD5: 60c17026a01727b0e16e6ab8685eb970
Detection count: 54
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: April 8, 2013
%USERPROFILE%\ksum.exe File name: ksum.exe
Size: 137.72 KB (137728 bytes)
MD5: 76cd2a8c68f74ab2082371b9e7a8f73d
Detection count: 43
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: March 4, 2013
%USERPROFILE%\aajiugtv.exe File name: aajiugtv.exe
Size: 84.48 KB (84480 bytes)
MD5: 6b1e671746373a5d95e55d17edec5623
Detection count: 36
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: January 14, 2013
%USERPROFILE%\ssbamyln.exe File name: ssbamyln.exe
Size: 79.36 KB (79360 bytes)
MD5: 576822dbaa51a63b3bcbfb55ba95dee6
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: January 14, 2013
%USERPROFILE%\xkhryrfk.exe File name: xkhryrfk.exe
Size: 261.12 KB (261120 bytes)
MD5: 5cd0f62f4227718da7aecfb373deb099
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: March 12, 2013
%USERPROFILE%\vdfx.exe File name: vdfx.exe
Size: 163.84 KB (163840 bytes)
MD5: 5b4ec0208c761c7229bed921c9398e17
Detection count: 20
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: December 26, 2012
%USERPROFILE%\yhovyomq.exe File name: yhovyomq.exe
Size: 429.56 KB (429568 bytes)
MD5: 0d4c8622f3d89982599a68ad537e1eb0
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: January 28, 2013
%USERPROFILE%\hhqpbnac.exe File name: hhqpbnac.exe
Size: 154.87 KB (154879 bytes)
MD5: 3e1911940de98a92241daa7081958b0a
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: January 8, 2013
%SystemDrive%\Users\<username>\dlnf.exe File name: dlnf.exe
Size: 163.84 KB (163840 bytes)
MD5: 99349e6375c970054903309acc48a640
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\Go??
Group: Malware file
Last Updated: April 29, 2013
%USERPROFILE%\vifpwpdi.exe File name: vifpwpdi.exe
Size: 154.11 KB (154112 bytes)
MD5: 64bb3af037c93ff7658f18f300a12572
Detection count: 6
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: March 29, 2013
%USERPROFILE%\jcplfvd.exe File name: jcplfvd.exe
Size: 184.32 KB (184320 bytes)
MD5: d0bb77f25e9ca42ea546366c23795934
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: March 21, 2013
%USERPROFILE%\gtksch.exe File name: gtksch.exe
Size: 184.32 KB (184320 bytes)
MD5: ab9d9a54c16e719b512c60b3cb91df6f
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: November 6, 2012
%USERPROFILE%\pxchj.exe File name: pxchj.exe
Size: 184.32 KB (184320 bytes)
MD5: 2c75a710f2a1b31652c9a3474ddb2f5e
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: March 29, 2013
%USERPROFILE%\ynhkkdc.exe File name: ynhkkdc.exe
Size: 126.97 KB (126976 bytes)
MD5: 2971a9db8341dc84f42014e44b3130dc
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: November 7, 2012
%SystemDrive%\Users\<username>\xgjxt.exe File name: xgjxt.exe
Size: 116.22 KB (116224 bytes)
MD5: 03c77d2622a80cf51e4c563bfa88c0e5
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\Laima
Group: Malware file
Last Updated: March 6, 2013
%ALLUSERSPROFILE%\Local Settings\Temp\msffvia.com File name: msffvia.com
Size: 81.92 KB (81920 bytes)
MD5: 18aa5170eee8e91da4b6341813875531
Detection count: 5
File type: Command, executable file
Mime Type: unknown/com
Path: %ALLUSERSPROFILE%\Local Settings\Temp
Group: Malware file
Last Updated: March 1, 2013
D:\Documents and Settings\Admin.XPWINDOWS7\mzwgnguz.exe File name: mzwgnguz.exe
Size: 161.79 KB (161792 bytes)
MD5: 8508ed09197bfc53d837b79a4cabffbc
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: D:\Documents and Settings\Admin.XPWINDOWS7\mzwgnguz.exe
Group: Malware file
Last Updated: September 29, 2021
%USERPROFILE%\ckme.exe File name: ckme.exe
Size: 54.22 KB (54227 bytes)
MD5: 13283f8d69cb99536d19376c03d4e06b
Detection count: 2
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: December 27, 2012

More files
Loading...