Home Malware Programs Trojans Trojan-Downloader.Win32.Bredolab.x

Trojan-Downloader.Win32.Bredolab.x

Posted: September 1, 2009

Threat Metric

Threat Level: 8/10
Infected PCs: 557
First Seen: December 7, 2010
Last Seen: March 4, 2022
OS(es) Affected: Windows

Trojan-Downloader.Win32.Bredolab.x is a malicious trojan horse that has the ability to connect to a remote server to download other malicious files onto the infected system without permission from the computer administrator. Once installed, Trojan-Downloader.Win32.Bredolab.x can open up the system to outside attackers where personal information or files can be compromised. Trojan-Downloader.Win32.Bredolab.x can be injected into the svhost.exe making it very difficult to detect and remove manually.

Aliases

Trj/CI.AS [Panda]BackDoor.Generic13.BJVA [AVG]W32/PKeliAV.fam@mm [Fortinet]Backdoor/Win32.Bredolab.gen [Antiy-AVL]Mal/FakeAv-LP [Sophos]TR/Crypt.XPACK.Gen2 [AntiVir]Heur.Suspicious [Comodo]Backdoor.Win32.Bredolab.mzp [Kaspersky]Backdoor.Bredolab-13 [ClamAV]Win32:Crypt-JJS [Avast]Packed.Generic.322 [Symantec]Win32/Kelihos.A [NOD32]Trojan [K7AntiVirus]Adware/SystemTool [Panda]W32/Kelihos.fam@mm [Fortinet]
More aliases (223)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES%\Protection Center\cntprot.exe File name: cntprot.exe
Size: 1.67 MB (1672192 bytes)
MD5: ac98e7b170d7d74427ba5c009f7baf4f
Detection count: 246
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Protection Center
Group: Malware file
Last Updated: December 8, 2010
%APPDATA%\RCommander\ccmain.exe File name: ccmain.exe
Size: 2.01 MB (2019840 bytes)
MD5: 8301f4f145fb70226b83b5737876722c
Detection count: 84
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\RCommander
Group: Malware file
Last Updated: December 8, 2010
%PROGRAMFILES%\Data Protection\datprot.exe File name: datprot.exe
Size: 1.69 MB (1699840 bytes)
MD5: 7195e6cf84df78ccf2e270f6897a1f7b
Detection count: 73
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Data Protection
Group: Malware file
Last Updated: December 8, 2010
%USERPROFILE%\Start Menu\Programs\Startup\mgjwin32.exe File name: mgjwin32.exe
Size: 35.32 KB (35328 bytes)
MD5: ef644838c580efdfb9468e9983f19068
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: December 8, 2010
%USERPROFILE%\Local Settings\Application Data\21291614.exe File name: 21291614.exe
Size: 1.02 MB (1021952 bytes)
MD5: 985ee799831c2caec78e776602519f16
Detection count: 32
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: December 8, 2010
%WINDIR%\System32\win32extension.dll File name: win32extension.dll
Size: 370.17 KB (370176 bytes)
MD5: 0cd4e76b0f590c70758db4dcf066cb2f
Detection count: 30
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\System32
Group: Malware file
Last Updated: December 8, 2010
%USERPROFILE%\Start Menu\Programs\Startup\fmnupd32.exe File name: fmnupd32.exe
Size: 30.72 KB (30720 bytes)
MD5: 60f54617055d072c09204f67d4e5c8fc
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: December 7, 2010
%USERPROFILE%\Start Menu\Programs\Startup\zqosys32.exe File name: zqosys32.exe
Size: 30.2 KB (30208 bytes)
MD5: e56eacde6210da4c539e8f155785d283
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: December 7, 2010
%USERPROFILE%\Start Menu\Programs\Startup\dmaupd32.exe File name: dmaupd32.exe
Size: 38.91 KB (38912 bytes)
MD5: 905c96edc65685a5587d9f5c2915d8f1
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: December 17, 2010

More files
Loading...