Home Malware Programs Trojans TrojanDownloader:Win32/Renos.NL

TrojanDownloader:Win32/Renos.NL

Posted: March 14, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 354
First Seen: November 30, 2010
Last Seen: August 16, 2022
OS(es) Affected: Windows

TrojanDownloader:Win32/Renos.NL is a generic detection for a family of trojans that connect to certain websites in order to download arbitrary files. TrojanDownloader:Win32/Renos.NL can download and install malicious files through network vulnerability onto the targeted computer system. TrojanDownloader:Win32/Renos.NL also downloads additional malware onto your machine, while advertising a fake spyware remover. TrojanDownloader:Win32/Renos.NL will block you to access the security websites by making changes to the hosts file.

TrojanDownloader:Win32/Renos.NL

Aliases

Win-Trojan/Downloader.109186 [AhnLab-V3]Win32/Ponmocup.A [eTrust-Vet]Trojan.Siggen2.1581 [DrWeb]Trojan.Generic.4786053 [BitDefender]Trojan.Win32.Agent2.cted [Kaspersky]Generic Downloader.ab [McAfee]Agent3.BAPB [AVG]W32/CPVA.A!tr [Fortinet]Trojan.Win32.Agent [Ikarus]Win-Trojan/Xema.109698 [AhnLab-V3]TR/Agent2.cpva [AntiVir]Trojan.Agent.APSK [BitDefender]Trojan.Win32.Agent2.cpva [Kaspersky]Win32.TRAgent.Cpva [eSafe]Win32/Agent.QUN [NOD32]
More aliases (199)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%TEMP%\jre_setup2.exe File name: jre_setup2.exe
Size: 109.22 KB (109223 bytes)
MD5: 44bb03a2a7a6ebd3bcd134939a4c6359
Detection count: 81
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 1, 2010
%WINDIR%\system32\ctfmon.exe File name: ctfmon.exe
Size: 30.2 KB (30208 bytes)
MD5: 90a76d59b3a0d7499fb3e08729ed2508
Detection count: 37
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: April 3, 2020
C:\Users\<username>\AppData\Local\Temp\setuper.exe File name: setuper.exe
Size: 109.69 KB (109698 bytes)
MD5: cff58e14cab10eb6a5e91df6ab8799cc
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\Temp\setuper.exe
Group: Malware file
Last Updated: August 16, 2022
%TEMP%\svchost.exe File name: svchost.exe
Size: 109.18 KB (109186 bytes)
MD5: 5d3b20dfe5325b53d85e1a594ec99cca
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: April 29, 2013

More files
Loading...