Home Malware Programs Trojans Trojan.Downloader.Regonid.B

Trojan.Downloader.Regonid.B

Posted: June 25, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 358
First Seen: June 25, 2012
Last Seen: April 22, 2023
OS(es) Affected: Windows

Trojan.Downloader.Regonid.B is a Trojan that contains rootkit capabilities and, thus, can disguise itself from detection and removal by many security applications. Trojan.Downloader.Regonid.B slows down the targeted PC causes Windows failures. Trojan.Downloader.Regonid.B can distribute more malicious programs to the infected computer. Trojan.Downloader.Regonid.B can steal passwords, user names, email addresses, and credit card information, modify the Windows Registry, add and delete processes, link your accounts to remote servers, or steal information from autoexec.bat and system's contact files. Trojan.Downloader.Regonid.B can process via scheduled tasks, and connect to remote servers via certain URLs.

Aliases

Downloader.Generic9.AXTX [AVG]PossibleThreat.w [Fortinet]Win-Trojan/Downloader.11776.RB [AhnLab-V3]Win32/ASuspect.HHBRQ [eTrust-Vet]Trojan.DownLoader1.16517 [DrWeb]Mal/DownLdr-DJ [Sophos]Trojan.Generic.3586256 [BitDefender]Trojan-Downloader.Win32.Small.aqgd [Kaspersky]Trojan.Downloader-93567 [ClamAV]W32/Trojan2.MNZA [F-Prot]Generic Downloader.x!doe [McAfee]TrojanDownloader.Small.aqfx [CAT-QuickHeal]Downloader.Generic9.BYXR [AVG]W32/Cyrel.DV!tr.dldr [Fortinet]Win-Trojan/Cyrel.11776.BP [AhnLab-V3]
More aliases (211)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Windows\HelpPPane.exe File name: HelpPPane.exe
Size: 69.63 KB (69632 bytes)
MD5: 92405a61f24d7e5d726e9894dba3b56b
Detection count: 115
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\HelpPPane.exe
Group: Malware file
Last Updated: April 22, 2023
%COMMONPROGRAMFILES%\BOONTY Shared\Service\Boonty.exe File name: Boonty.exe
Size: 69.12 KB (69120 bytes)
MD5: ad84722dbec13bda5d2c1f79962ddb96
Detection count: 74
File type: Executable File
Mime Type: unknown/exe
Path: %COMMONPROGRAMFILES%\BOONTY Shared\Service
Group: Malware file
Last Updated: June 26, 2012
C:\Windows\SysWOW64\Roboccopy.exe File name: Roboccopy.exe
Size: 11.77 KB (11776 bytes)
MD5: e2a23b70c937fda32d1f90dc9374a7ad
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\SysWOW64\Roboccopy.exe
Group: Malware file
Last Updated: March 18, 2023
%WINDIR%\system32\bblastcln.exe File name: bblastcln.exe
Size: 17.4 KB (17408 bytes)
MD5: d9122e138ad7926ef5fd6c0efb97280a
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: June 25, 2012
C:\Windows\NIRRCMD.exe File name: NIRRCMD.exe
Size: 45.05 KB (45056 bytes)
MD5: dbcc57004614fddaa2e17ba7348df5c0
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\NIRRCMD.exe
Group: Malware file
Last Updated: January 3, 2021
C:\WINDOWS\System32\attieah32.exe File name: attieah32.exe
Size: 48.12 KB (48128 bytes)
MD5: 9fa1dc6f35e3096ef1afa0418f96a2f2
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: C:\WINDOWS\System32\attieah32.exe
Group: Malware file
Last Updated: January 27, 2022
%WINDIR%\system32\rrdsaddin.exe File name: rrdsaddin.exe
Size: 11.77 KB (11776 bytes)
MD5: 2ef5a2d3649cccb4d6cdbb1419cf299f
Detection count: 2
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: October 18, 2012
Loading...