Home Malware Programs Trojans Trojan.Medfos.gen!A

Trojan.Medfos.gen!A

Posted: July 20, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 771
First Seen: July 20, 2012
OS(es) Affected: Windows

Aliases

Trojan.Win32.Midhos.lcq [Kaspersky]W32/Medfos.C.gen!Eldorado [F-Prot]Trojan.Midhos.lcq [CAT-QuickHeal]Cryptic.EIZ [AVG]TrojWare.Win32.Agent.MES [Comodo]Gen:Variant.Symmi.4012 [BitDefender]Mal/Medfos-H [Sophos]TR/Medfos.A.2085 [AntiVir]TrojWare.Win32.Medfos.EG [Comodo]Trojan.Win32.Midhos.uql [Kaspersky]Trojan.Win32.Midhos.ldj [Kaspersky]Win32:Agent-APDK [Trj] [Avast]Trojan.Midhos.ldj [CAT-QuickHeal]Win32:Agent-APHS [GData]Win32:Agent-APHS [Trj] [Avast]
More aliases (342)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\rtosor.dll File name: rtosor.dll
Size: 173.56 KB (173568 bytes)
MD5: 04ba37b52eff091542309954ff3809ea
Detection count: 108
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: December 19, 2012
%APPDATA%\drvpt.dll File name: drvpt.dll
Size: 171 KB (171008 bytes)
MD5: fe065c9dff87ceebb786043334b917aa
Detection count: 94
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: September 17, 2012
%USERPROFILE%\\AppData\Roaming\acpser.dll File name: acpser.dll
Size: 174.08 KB (174080 bytes)
MD5: 005a5d7887449799ed0b9d65e57a0ae8
Detection count: 83
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\\AppData\Roaming
Group: Malware file
Last Updated: December 17, 2012
%USERPROFILE% normale\AppData\Roaming\urontp.dll File name: urontp.dll
Size: 143.36 KB (143360 bytes)
MD5: 956a3ebacd21f824639b9bc3768c7362
Detection count: 71
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE% normale\AppData\Roaming
Group: Malware file
Last Updated: December 12, 2012
%SystemDrive%\Users\<username>\AppData\Roaming\sithpc.dll File name: sithpc.dll
Size: 184.32 KB (184320 bytes)
MD5: 2fd9989e52fb8b2c4b5b1f71b64540fe
Detection count: 71
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: March 29, 2013
%APPDATA%\uptapc.dll File name: uptapc.dll
Size: 138.24 KB (138240 bytes)
MD5: 0d816fa95c6c1dd83c6c6bdf77006a61
Detection count: 62
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: December 24, 2012
%WINDIR%\TEMP\ipadn.dll File name: ipadn.dll
Size: 146.94 KB (146944 bytes)
MD5: 4f39b4e5dab91800a575b9980f18c1cd
Detection count: 55
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: January 8, 2013
%APPDATA%\nctact.dll File name: nctact.dll
Size: 169.98 KB (169984 bytes)
MD5: df5b897961dde1626a9fffce19eada34
Detection count: 47
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: October 26, 2012
%SystemDrive%\Users\<username>\AppData\Roaming\msadir.dll File name: msadir.dll
Size: 179.2 KB (179200 bytes)
MD5: 623030278ba028b31eb11f94b0c4b4df
Detection count: 34
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: November 2, 2012
%APPDATA%\brans.dll File name: brans.dll
Size: 162.3 KB (162304 bytes)
MD5: 4eef45ac0e1abb731c17138c6a69ffea
Detection count: 25
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: January 14, 2013
%APPDATA%\wmdsr.dll File name: wmdsr.dll
Size: 171.52 KB (171520 bytes)
MD5: 9c4000aa59891054f441889cb55a3e22
Detection count: 21
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: September 25, 2012
%APPDATA%\csdmsy.dll File name: csdmsy.dll
Size: 150.52 KB (150528 bytes)
MD5: 766c5f5238fe6469c91c2679d03f1bd2
Detection count: 21
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: November 14, 2012
%SystemDrive%\Documents and Settings\brian\application data\merdr.dll File name: merdr.dll
Size: 157.69 KB (157696 bytes)
MD5: 1cfa2221042e4e09758de6e38dda04d0
Detection count: 16
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Documents and Settings\brian\application data
Group: Malware file
Last Updated: January 14, 2013
%APPDATA%\\fconr.dll File name: fconr.dll
Size: 142.84 KB (142848 bytes)
MD5: b44c821021fab43be040c1d1dc85d025
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%\
Group: Malware file
Last Updated: December 20, 2012
%APPDATA%\uiwit.dll File name: uiwit.dll
Size: 178.68 KB (178688 bytes)
MD5: fea2095385607acdb8643b88dfcd79c5
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: November 9, 2012
%SystemDrive%\Users\<username>\AppData\Roaming\csfev.dll File name: csfev.dll
Size: 152.57 KB (152576 bytes)
MD5: 9e8ec9b3ae0da79aaa9c0f11d7f3c11f
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: October 5, 2012
%APPDATA%\pasdi.dll File name: pasdi.dll
Size: 153.08 KB (153088 bytes)
MD5: 7eee8475627f99134e4709b48b6c4c39
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: November 22, 2012
%APPDATA%\dasct.dll File name: dasct.dll
Size: 160.76 KB (160768 bytes)
MD5: f633a93bc7227c903cc2ec7d89c58d09
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: December 11, 2012
%APPDATA%\lhnvca.dll File name: lhnvca.dll
Size: 149.5 KB (149504 bytes)
MD5: cd2fb40e2d03de429004ccd2aeadddc3
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: December 5, 2012
%SystemDrive%\Documents and Settings\Gregg B\Application Data\hfstou.dll File name: hfstou.dll
Size: 148.99 KB (148992 bytes)
MD5: cd934cf8463050e39fc57b2c84264ab6
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Documents and Settings\Gregg B\Application Data
Group: Malware file
Last Updated: December 17, 2012

More files
Loading...