Home Malware Programs Trojans Trojan.Dropper.CoinStealer.A

Trojan.Dropper.CoinStealer.A

Posted: October 24, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 4,216
First Seen: October 24, 2012
Last Seen: October 16, 2024
OS(es) Affected: Windows

Aliases

W32/VB.BQOY!tr [Fortinet]Trojan-Dropper.Win32.VB [Ikarus]Mal/Generic-L [Sophos]Artemis!7591E52AE1E5 [McAfee]TrojanDropper.VB.bqoy [CAT-QuickHeal]W32/Gimemo.SKR!tr [Fortinet]Trojan/Win32.Turkojan [AhnLab-V3]TR/Rogue.kdv.771074 [AntiVir]BackDoor.Kuluoz.3 [DrWeb]Troj/Karagan-AJ [Sophos]Trojan-Downloader.Win32.Kuluoz.aat [Kaspersky]PWS-Zbot.gen.aou [McAfee]Generic29.CAKY [AVG]W32/Emogen.H [Fortinet]Mal/Emogen-H [Sophos]
More aliases (185)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SYSTEMDRIVE%\Users\<username>\Downloads\Luck Acc\SYS2U\windows\Windows.Loader.v2.1.7.By.Daz\WAT Fix\WAT Fix\WAT Fix.exe File name: WAT Fix.exe
Size: 696.83 KB (696831 bytes)
MD5: c478eded04a9991cc55a34ae81037518
Detection count: 2,024
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\Downloads\Luck Acc\SYS2U\windows\Windows.Loader.v2.1.7.By.Daz\WAT Fix\WAT Fix\WAT Fix.exe
Group: Malware file
Last Updated: February 1, 2025
C:\Users\<username>\Downloads\PROG\Oi\Programmer\OiVeloxCheck.exe File name: OiVeloxCheck.exe
Size: 617.47 KB (617472 bytes)
MD5: 8e0fa3eae69eba85b4a198b26034dd02
Detection count: 126
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Downloads\PROG\Oi\Programmer\OiVeloxCheck.exe
Group: Malware file
Last Updated: August 4, 2022
%TEMP%\GoogleUpdate.exe File name: GoogleUpdate.exe
Size: 53.24 KB (53248 bytes)
MD5: 50f39be117423fe697e7beb5444a2c99
Detection count: 86
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: October 29, 2012
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Templates\mscormmc.exe File name: mscormmc.exe
Size: 11.26 KB (11264 bytes)
MD5: e29df1bf0176e71c04f3d9e47d5144b0
Detection count: 80
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Templates\mscormmc.exe
Group: Malware file
Last Updated: February 20, 2022
%APPDATA%\41223.exe File name: 41223.exe
Size: 503.8 KB (503808 bytes)
MD5: b9157001f53ba6cb2292e33911dc2387
Detection count: 54
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: October 29, 2012
%WINDIR%\system32\openvpnsrv.exe File name: openvpnsrv.exe
Size: 12.28 KB (12288 bytes)
MD5: 7acd7169ae96e92959e1270cbd27cada
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: October 25, 2012
%WINDIR%\System32\drivers\tdx.sys File name: tdx.sys
Size: 74.24 KB (74240 bytes)
MD5: 26f8e33eff2d0bd790758198af001d5a
Detection count: 23
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: October 29, 2012
%USERPROFILE%\dpnsdia.exe File name: dpnsdia.exe
Size: 253.44 KB (253440 bytes)
MD5: bee903b47db958817d50edd48b7c99b2
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: October 25, 2012
%USERPROFILE%\vugolecrizwu.exe File name: vugolecrizwu.exe
Size: 80.38 KB (80384 bytes)
MD5: 03e35a8e1b1dd818c90f9811e8514df7
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: October 25, 2012
%USERPROFILE%\bcfchawvfzm.exe File name: bcfchawvfzm.exe
Size: 101.37 KB (101376 bytes)
MD5: 766802f2b45d5786f2c0ef16318bbeb7
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: October 25, 2012
%SystemDrive%\Dokumente und Einstellungen\M.Struck\Lokale Einstellungen\Anwendungsdaten\trhcssta.exe File name: trhcssta.exe
Size: 54.78 KB (54784 bytes)
MD5: aa2a1af6030f1e2896e68a7582beb9f2
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Dokumente und Einstellungen\M.Struck\Lokale Einstellungen\Anwendungsdaten
Group: Malware file
Last Updated: October 29, 2012
Loading...