Home Malware Programs Trojans Trojan.Downloader.Cbeplay.P

Trojan.Downloader.Cbeplay.P

Posted: October 10, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 740
First Seen: October 10, 2011
Last Seen: July 23, 2020
OS(es) Affected: Windows

Aliases

Cryptic [AVG]TR/Kryptik.RC.4 [AntiVir]Trojan-Ransom.Win32.PornoAsset.astz [Kaspersky]Win32:Crypt-OCN [Trj] [Avast]Trojan.Ransomlock!g28 [Symantec]W32/Falab.Q.gen!Eldorado [F-Prot]TrojanRansom.PornoAsset.astz [CAT-QuickHeal]BackDoor.Generic16.APUP [AVG]W32/ZAccess.BCSJ!tr.bdr [Fortinet]TR/Rogue.KD.831878.1 [AntiVir]Backdoor.Win32.ZAccess.bcsj [Kaspersky]Win.Trojan.831878 [ClamAV]Win32:Sirefef-AVA [Drp] [Avast]Backdoor.ZAccess.csj [CAT-QuickHeal]Generic30.AJBA [AVG]
More aliases (776)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SystemDrive%\Users\<username>\AppData\Roaming\moursno.exe File name: moursno.exe
Size: 158.72 KB (158720 bytes)
MD5: ca1f37ddea3b6c666aef3e70424ac942
Detection count: 74
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: January 28, 2013
%WINDIR%\system32\k8h00.exe File name: k8h00.exe
Size: 119.29 KB (119296 bytes)
MD5: 8de310533a0c8182f9cc38dcc561b9f0
Detection count: 63
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: July 23, 2020
%APPDATA%\0.12182796029309628g8j8.exe File name: 0.12182796029309628g8j8.exe
Size: 145.4 KB (145408 bytes)
MD5: 448e17253571c074dfc79005b1627adc
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: July 26, 2012
%SystemDrive%\Users\<username>\AppData\Roaming\0.8869206817557324.exe File name: 0.8869206817557324.exe
Size: 138.75 KB (138752 bytes)
MD5: 9b7afdca8d9d03e00ecddfc63ae5febe
Detection count: 41
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: March 21, 2013
%WINDIR%\system32\guy12.exe File name: guy12.exe
Size: 218.11 KB (218112 bytes)
MD5: 58d67f969064141da608845b9b8cc0cc
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: September 25, 2012
%SystemDrive%\Users\<username>\AppData\Roaming\hnszs0.exe File name: hnszs0.exe
Size: 148.99 KB (148992 bytes)
MD5: 11897719d66f86173fa5a86774ef2a1e
Detection count: 25
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: February 11, 2013
%APPDATA%\save_0_in.exe File name: save_0_in.exe
Size: 264.19 KB (264192 bytes)
MD5: a8a296480738305e7d89c60197f3912b
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: November 2, 2012
%SystemDrive%\Users\<username>\AppData\Roaming\wgsdgsdgdsgsd.exe File name: wgsdgsdgdsgsd.exe
Size: 157.17 KB (157176 bytes)
MD5: 6b23e39ac8c5e64b515bb2d61e3e15ed
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: March 21, 2013
%USERPROFILE%\Application Data\0.8389951272831557.exe File name: 0.8389951272831557.exe
Size: 155.13 KB (155136 bytes)
MD5: 81d836f67df3849ebfbd2d96611e8557
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Application Data
Group: Malware file
Last Updated: March 13, 2012
%APPDATA%\yyu32.exe File name: yyu32.exe
Size: 218.62 KB (218624 bytes)
MD5: 702652db587968790a356071e57dff7a
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: January 8, 2013
%WINDIR%\system32\hj8ol0.exe File name: hj8ol0.exe
Size: 163.84 KB (163840 bytes)
MD5: b7ea748211c20cb903f04696092772e8
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 14, 2013
%SystemDrive%\Users\<username>\AppData\Roaming\6XFptEI.exe File name: 6XFptEI.exe
Size: 156.67 KB (156672 bytes)
MD5: 7547b0f8de0e0b7dfdd32f0b19c55d40
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: December 24, 2012
%WINDIR%\system32\fest0r_ot.exe File name: fest0r_ot.exe
Size: 297.98 KB (297984 bytes)
MD5: 64aa1d4331c99469956e9ab5877a3094
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 8, 2013
%APPDATA%\hos32.exe File name: hos32.exe
Size: 221.69 KB (221696 bytes)
MD5: 22f413bb6411dbe5da31aac39b212fcb
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: September 25, 2012
%SystemDrive%\Users\<username>\AppData\Roaming\hleo32.exe File name: hleo32.exe
Size: 225.28 KB (225280 bytes)
MD5: 84bfb8c3fac23833e7ba17de4ed4defe
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: October 5, 2012
%APPDATA%\fir0.exe File name: fir0.exe
Size: 267.77 KB (267776 bytes)
MD5: 12b114e7b39342b0ac089e6260e23323
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: March 21, 2013
%SystemDrive%\Users\<username>\AppData\Roaming\0_0u_l.exe File name: 0_0u_l.exe
Size: 156.16 KB (156160 bytes)
MD5: 63b137219073bef4ee3b64f4efcdf541
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: January 14, 2013
%SystemDrive%\Users\<username>\AppData\Roaming\deo0_sar.exe File name: deo0_sar.exe
Size: 151.55 KB (151552 bytes)
MD5: 8041838f664e2486cc662dbed3433a93
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: October 5, 2012
%WINDIR%\system32\wlsidten.exe File name: wlsidten.exe
Size: 164.35 KB (164352 bytes)
MD5: b58b8f4882284c6973cbb32ecc651eef
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 28, 2013
%APPDATA%\0.5822266596762845h7i.exe File name: 0.5822266596762845h7i.exe
Size: 161.79 KB (161792 bytes)
MD5: 25e437ba436a816e3a0e035b6221b165
Detection count: 4
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: August 8, 2012

More files
Loading...