Home Malware Programs Trojans Trojan.Ransom.JU

Trojan.Ransom.JU

Posted: September 11, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 1,543
First Seen: September 11, 2012
OS(es) Affected: Windows

Aliases

TDSS.AI [AVG]W32/Agent.XNS!tr [Fortinet]Trojan.SuspectCRC [Ikarus]TR/Rogue.kdv.702781 [AntiVir]Troj/Agent-XNS [Sophos]Trojan.Win32.Agent2.fivv [Kaspersky]Win.Trojan.TDSS-326 [ClamAV]Win32:LockScreen-ME [Trj] [Avast]WS.Reputation.1 [Symantec]Trojan [K7AntiVirus]Ransom!gq [McAfee]Trojan.Agent2.fivv [CAT-QuickHeal]Application/BoontyGames [Panda]Backdoor/Win32.Agent.gen [Antiy-AVL]APPL/BoontyGames [AntiVir]
More aliases (128)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%LOCALAPPDATA%\hippogeekSA\bin\1.0.4.0\hippogeekSA.exe File name: hippogeekSA.exe
Size: 792.57 KB (792576 bytes)
MD5: 7f72cb849b8836236a6108985641a3b4
Detection count: 1,056
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\hippogeekSA\bin\1.0.4.0
Group: Malware file
Last Updated: September 17, 2012
%SystemDrive%\RECYCLER\S-1-5-21-1391433722-3718647819-900492691-1204\$2c17cf66dec4ce3ff48a38b3dea39261\n. File name: n.
Size: 47.1 KB (47104 bytes)
MD5: bb893dffd54b9ed9cb9cb6344e2386b9
Detection count: 232
Path: %SystemDrive%\RECYCLER\S-1-5-21-1391433722-3718647819-900492691-1204\$2c17cf66dec4ce3ff48a38b3dea39261
Group: Malware file
Last Updated: September 14, 2012
c:\program files (x86)\common files\boonty shared\service\boonty.exe File name: boonty.exe
Size: 69.12 KB (69120 bytes)
MD5: 0b2130a8d4b34916a15345fee3337b5f
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: c:\program files (x86)\common files\boonty shared\service\boonty.exe
Group: Malware file
Last Updated: June 23, 2023
%SystemDrive%\Documents and Settings\Vojtech\Local Settings\Data aplikac?\Skype\SkypePM.exe File name: SkypePM.exe
Size: 45.56 KB (45568 bytes)
MD5: 0b1cde0e93be337e4b21767408cdac9f
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Documents and Settings\Vojtech\Local Settings\Data aplikac?\Skype
Group: Malware file
Last Updated: September 11, 2012
%APPDATA%\Microsoft\Office\PresentationCore.cpl File name: PresentationCore.cpl
Size: 438.27 KB (438272 bytes)
MD5: 52fec4e871b654230439b7a26e6f96b1
Detection count: 4
Mime Type: unknown/cpl
Path: %APPDATA%\Microsoft\Office
Group: Malware file
Last Updated: September 14, 2012

More files
Loading...