Home Malware Programs Trojans Trojan.Lethic

Trojan.Lethic

Posted: August 31, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 172,592
First Seen: September 20, 2010
Last Seen: July 8, 2024
OS(es) Affected: Windows

Trojan.Lethic is a malicious trojan horse that may cause security risks for a targeted computer or its network environment. Trojan.Lethic creates a startup registry entry and may display annoying fake alerts of malware payloads in order to persuade users into buying rogue antispyware products. Trojan.Lethic contains characteristics of an identified security risk and should be executed once detected.

Aliases

Dropper.Agent.ABLK [AVG]W32/Agent.DGQN!tr [Fortinet]not-a-virus.Crack.Adobe [Ikarus]Heuristic.BehavesLike.Win32.ModifiedUPX.C!87 [McAfee-GW-Edition]Trojan.Generic.4976559 [BitDefender]Generic.dx!upp [McAfee]Trj/Downloader.MDW [Panda]Artemis!945D9BB0A1A5 [McAfee+Artemis]Trojan.Win32.Scar.bbsv [Kaspersky]Win32/Lethic.L [eTrust-Vet]Trojan.Generic.2935441 [BitDefender]TR/Scar.bbsv [AntiVir]Win-Trojan/Scar.44544.X [AhnLab-V3]Generic.dx!kkt [McAfee]Win32/Lethic.J [eTrust-Vet]
More aliases (127)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SystemDrive%\RECYCLER\X-1-5-21-1960408961-725345543-839522115-1003\WinSysApp.exe File name: WinSysApp.exe
Size: 376.83 KB (376832 bytes)
MD5: 834a0c35e50b34531a3be927fc363f42
Detection count: 508
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\X-1-5-21-1960408961-725345543-839522115-1003
Group: Malware file
Last Updated: June 15, 2017
%SYSTEMDRIVE%\Users\<username>\AppData\Local\Temp\NND27F.tmp.exe File name: NND27F.tmp.exe
Size: 114.68 KB (114688 bytes)
MD5: e622e6d0ca46a71496c942b8615c28d9
Detection count: 274
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Local\Temp\NND27F.tmp.exe
Group: Malware file
Last Updated: April 15, 2021
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-698547215\svckost35.exe File name: svckost35.exe
Size: 390.57 KB (390576 bytes)
MD5: 4f350c0a34188f3c950b15e4802df959
Detection count: 110
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-698547215
Group: Malware file
Last Updated: June 15, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-698547219\svckost39.exe File name: svckost39.exe
Size: 355.69 KB (355699 bytes)
MD5: 9c77c2ad78162d9cde08b88e0eff89c7
Detection count: 110
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-698547219
Group: Malware file
Last Updated: June 15, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-69854721\svckost31.exe File name: svckost31.exe
Size: 359.28 KB (359285 bytes)
MD5: 4dbc9cbdc9ff93241dd24609ce3f288e
Detection count: 110
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-69854721
Group: Malware file
Last Updated: June 15, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-698547216\svckost36.exe File name: svckost36.exe
Size: 356.37 KB (356373 bytes)
MD5: e23df2923de2f25650b0ff1c1a26de9e
Detection count: 105
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-698547216
Group: Malware file
Last Updated: June 15, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-698547214\svckost34.exe File name: svckost34.exe
Size: 356.79 KB (356790 bytes)
MD5: 101e790896917f9a2dd952048eb67125
Detection count: 96
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-698547214
Group: Malware file
Last Updated: June 15, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-698547218\svckost38.exe File name: svckost38.exe
Size: 297.86 KB (297867 bytes)
MD5: c9134ba69736b38ca61b75443854832e
Detection count: 94
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-698547218
Group: Malware file
Last Updated: June 15, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-698547212\svckost32.exe File name: svckost32.exe
Size: 387.42 KB (387420 bytes)
MD5: a17fbd84cf8da6c33eda1c1c463d527e
Detection count: 80
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-698547212
Group: Malware file
Last Updated: June 15, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-1965798451\scvhchost732.exe File name: scvhchost732.exe
Size: 114.68 KB (114688 bytes)
MD5: d49e5bd981fa4650afbad0d64136fa35
Detection count: 47
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-1965798451
Group: Malware file
Last Updated: July 27, 2017
6df3f6785c3837fc34bf24904ffdbe82 File name: 6df3f6785c3837fc34bf24904ffdbe82
Size: 131.07 KB (131072 bytes)
MD5: 6df3f6785c3837fc34bf24904ffdbe82
Detection count: 37
Group: Malware file
Last Updated: February 18, 2022
88819d765f502260858b730fd068ecb5 File name: 88819d765f502260858b730fd068ecb5
Size: 114.68 KB (114688 bytes)
MD5: 88819d765f502260858b730fd068ecb5
Detection count: 37
Group: Malware file
Last Updated: February 18, 2022
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-1968138750\backwindow632.exe File name: backwindow632.exe
Size: 114.68 KB (114688 bytes)
MD5: 871c90f2f8c50bef4ebcc28d66299d1b
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-1968138750
Group: Malware file
Last Updated: July 27, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-6985472110112323\systeez.exe File name: systeez.exe
Size: 114.68 KB (114688 bytes)
MD5: 5e9665834107f19083c9630aee3ba5de
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-6985472110112323
Group: Malware file
Last Updated: July 27, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-196818750\backwindow132.exe File name: backwindow132.exe
Size: 114.68 KB (114688 bytes)
MD5: 58895a6d2852ffec3e9ffae8d048600c
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-196818750
Group: Malware file
Last Updated: July 27, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-1968152800\systimwindow32.exe File name: systimwindow32.exe
Size: 114.68 KB (114688 bytes)
MD5: d7fce91a8bf6afd3b1e3f051bb7cfa25
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-1968152800
Group: Malware file
Last Updated: July 27, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-196852800\lja7shayne4.exe File name: lja7shayne4.exe
Size: 114.68 KB (114688 bytes)
MD5: 5cb35e4a928145824e2fe029271014f2
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-196852800
Group: Malware file
Last Updated: July 27, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-196852800\lja7shayne3.exe File name: lja7shayne3.exe
Size: 114.68 KB (114688 bytes)
MD5: 327a689b5e24a4fa945af54102e05e63
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-196852800
Group: Malware file
Last Updated: July 27, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-196852800\lliseconc8.exe File name: lliseconc8.exe
Size: 114.68 KB (114688 bytes)
MD5: 1ad1ce3124381bd0493d8fb0f30e8f8b
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-196852800
Group: Malware file
Last Updated: December 29, 2019
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-196852800\lisecewwevw.exe File name: lisecewwevw.exe
Size: 114.68 KB (114688 bytes)
MD5: ffe8d34fb94be12fb5e57076c01aaa75
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-196852800
Group: Malware file
Last Updated: July 27, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-1968138750\backwindow432.exe File name: backwindow432.exe
Size: 114.68 KB (114688 bytes)
MD5: a5689e1d348e608ad5106dc860fbd503
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-1968138750
Group: Malware file
Last Updated: July 27, 2017
%SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-196852800\svchost62.exe File name: svchost62.exe
Size: 114.68 KB (114688 bytes)
MD5: 56a783c3934a520393fb7821684039f5
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-0243556031-888888379-781862338-196852800
Group: Malware file
Last Updated: July 27, 2017

More files

Registry Modifications

The following newly produced Registry Values are:

File name without pathsystimwindow32.exeRegexp file mask%APPDATA%\WindowsUpdate\mobsync.exe%APPDATA%\WindowsUpdate\MSupdate.exe%APPDATA%\WindowsUpdate\System32.exe

Related Posts

Loading...