Home Malware Programs Trojans Trojan.Regonid.A

Trojan.Regonid.A

Posted: February 28, 2013

Threat Metric

Threat Level: 8/10
Infected PCs: 124
First Seen: February 28, 2013
OS(es) Affected: Windows

Aliases

Heuristic.LooksLike.Win32.Suspicious.F!81 [McAfee-GW-Edition]Trojan.Win32.Jorik.Fareit.pke [Kaspersky]Generic31.CBUK [AVG]W32/Kryptik.ASVM!tr [Fortinet]Artemis!F206AE8E4048 [McAfee]Troj/Tracur-AK [Sophos]Trojan-FBCB!F6E25EA561E1 [McAfee]Trj/Genetic.gen [Panda]TR/Crypt.ZPACK.Gen [AntiVir]UDS:DangerousObject.Multi.Generic [Kaspersky]Backdoor.Win32.CPD.at [Kaspersky]MSIL.L [AVG]Trojan.PWS.Siggen.28421 [DrWeb]a variant of MSIL/Injector.YU [NOD32]W32/Disabler.NAK!tr [Fortinet]
More aliases (121)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SystemDrive%\Users\<username>\AppData\Roaming\2147392423.exe File name: 2147392423.exe
Size: 650.75 KB (650752 bytes)
MD5: 0966dd25fe63f6b4f226b17ea09e3edd
Detection count: 95
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: March 1, 2013
%ALLUSERSPROFILE%\Extension\Extension.exe File name: Extension.exe
Size: 1.48 MB (1485824 bytes)
MD5: 6a601b8f68866a5eb65df19a676bddf4
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Extension
Group: Malware file
Last Updated: March 4, 2013
%LOCALAPPDATA%\RemEngine\CRE\rpdxhkp.dll File name: rpdxhkp.dll
Size: 684.03 KB (684032 bytes)
MD5: f6e25ea561e1b8fa032feb2989d37500
Detection count: 19
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\RemEngine\CRE
Group: Malware file
Last Updated: March 4, 2013
%APPDATA%\Microsoft\Outlook\ws2helpx86_9969.cpl File name: ws2helpx86_9969.cpl
Size: 541.44 KB (541446 bytes)
MD5: e24d936e89a517a4aa8c1d17427f29f6
Detection count: 11
Mime Type: unknown/cpl
Path: %APPDATA%\Microsoft\Outlook
Group: Malware file
Last Updated: March 21, 2013
%ALLUSERSPROFILE%\PrgLocalPolicy\prg_policyiylwoyw.exe File name: prg_policyiylwoyw.exe
Size: 79.36 KB (79360 bytes)
MD5: e049f6b5b843137add6a572c1cfb8005
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\PrgLocalPolicy
Group: Malware file
Last Updated: March 4, 2013
%TEMP%\bs27 .exe File name: bs27 .exe
Size: 3.11 MB (3110912 bytes)
MD5: e4a352b2bee182b0f87146511f33422d
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: March 4, 2013
%SystemDrive%\Users\<username>\AppData\Roaming\cg1111c.exe File name: cg1111c.exe
Size: 742.4 KB (742400 bytes)
MD5: bd15b318106e7fd7c21a0c160a8e7006
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: March 1, 2013
Loading...