Home Malware Programs Trojans TrojanSpy:MSIL/Crime.B

TrojanSpy:MSIL/Crime.B

Posted: December 28, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 269
First Seen: December 28, 2012
Last Seen: April 14, 2023
OS(es) Affected: Windows

Aliases

Trojan.Eicartest [Ikarus]New or modified Trivial [F-Prot]Generic24.BUYK [AVG]Backdoor.Win32.Gnutler [Ikarus]Trojan/Win32.Cryptik [AhnLab-V3]Trojan.DownLoader4.52288 [DrWeb]Gen:Heur.IPZ.6 [BitDefender]Win32:Gnutler-F [Trj] [Avast]a variant of Win32/Kryptik.SKP [NOD32]Agent3.CKTG [AVG]W32/ZBOT.HL!tr [Fortinet]Trojan.Win32.Webprefix [Ikarus]Trojan/Win32.Agent [AhnLab-V3]Trojan.DownLoader7.23342 [DrWeb]Trojan.Win32.Agent.usdp [Kaspersky]
More aliases (146)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\Local Settings\Temp\mszorvua.scr File name: mszorvua.scr
Size: 95.74 KB (95744 bytes)
MD5: af347bce98175a459427d83cf15f944e
Detection count: 80
Mime Type: unknown/scr
Path: %ALLUSERSPROFILE%\Local Settings\Temp
Group: Malware file
Last Updated: January 5, 2013
%TEMP%\013afb884eb5.exe File name: 013afb884eb5.exe
Size: 201.49 KB (201496 bytes)
MD5: defe98fccec873d5a5e1a43b20c961a6
Detection count: 71
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: January 8, 2013
I:\New Folder\New Text Documentrrr.vbs File name: New Text Documentrrr.vbs
Size: 67B (67 bytes)
MD5: 130e1b110390eb5c00e554976fa8dd68
Detection count: 47
Mime Type: unknown/vbs
Path: I:\New Folder
Group: Malware file
Last Updated: April 14, 2023
%WINDIR%\Installer\{435B2E6D-E169-40DE-0909-68E9E8B0B756}\syshost.exe File name: syshost.exe
Size: 131.07 KB (131072 bytes)
MD5: d1e6da5814a697f2c3154e32fcf205ab
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Installer\{435B2E6D-E169-40DE-0909-68E9E8B0B756}
Group: Malware file
Last Updated: January 5, 2013
%USERPROFILE%\463589976908621\winsvc.exe File name: winsvc.exe
Size: 64 KB (64000 bytes)
MD5: 58b4c3acacea8cbbeff01adf4cc64107
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\463589976908621
Group: Malware file
Last Updated: January 5, 2013
%WINDIR%\av_soft.exe File name: av_soft.exe
Size: 3.55 MB (3558912 bytes)
MD5: 376126edae1c51f7c086aa2d821af085
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: January 5, 2013
%APPDATA%\24.exe File name: 24.exe
Size: 104.76 KB (104768 bytes)
MD5: 3cda2287db33d9743f5a4165406f25fc
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 28, 2012
%APPDATA%\AcVxzDUdaGKeNRrGknzO.exe File name: AcVxzDUdaGKeNRrGknzO.exe
Size: 756.22 KB (756224 bytes)
MD5: 33a6b9f793dfcd26f91fbb78e558e2db
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: January 5, 2013
Loading...