Home Malware Programs Trojans TrojanSpy:Win64/Ursnif.E

TrojanSpy:Win64/Ursnif.E

Posted: January 22, 2013

Threat Metric

Threat Level: 8/10
Infected PCs: 66
First Seen: January 22, 2013
Last Seen: December 24, 2020
OS(es) Affected: Windows

Aliases

Ransomer.BLE [AVG]W32/LockScreen.AQD [Fortinet]Trojan.Win32.Agent [Ikarus]Trojan/Win32.Agentb [AhnLab-V3]Artemis!4842AF6DD242 [McAfee-GW-Edition]TR/Rogue.kdz.5207.3 [AntiVir]Trojan.DownLoader7.49132 [DrWeb]TrojWare.Win32.Agent.~FMX [Comodo]Trojan.Win32.Agentb.hwd [Kaspersky]FakeAlert-SecurityTool.hc [McAfee]PSW.Banker6.GNI [AVG]W32/Malware_fam.NB [Fortinet]Trojan-PWS.Banker6 [Ikarus]Trojan/Win32.Banker [AhnLab-V3]Trojan/Win32.Banker.gen [Antiy-AVL]
More aliases (78)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%USERPROFILE%\Configura??es locais\Dados de aplicativos\01U79NB5DE2G2T2\Cap.exe File name: Cap.exe
Size: 3.99 MB (3993088 bytes)
MD5: 90f2aa5f93ab3bf8ac0762905fbfb81b
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Configura??es locais\Dados de aplicativos\01U79NB5DE2G2T2
Group: Malware file
Last Updated: January 28, 2013
C:\NeoSpy\main.exe File name: main.exe
Size: 3.54 MB (3549184 bytes)
MD5: 53cf9c57e45e31922204909fc3cd6939
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: C:\NeoSpy\main.exe
Group: Malware file
Last Updated: April 5, 2023
C:\Users\<username>\AppData\Local\Temp\DpiSsfc64.dll File name: DpiSsfc64.dll
Size: 51.71 KB (51712 bytes)
MD5: 84943b517ba4e2aec9d39148e04afd5d
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Users\<username>\AppData\Local\Temp\DpiSsfc64.dll
Group: Malware file
Last Updated: December 24, 2020
%SystemDrive%\Users\<username>\AppData\Roaming\skype.dat File name: skype.dat
Size: 110.08 KB (110080 bytes)
MD5: 4842af6dd242b076c5ea5ec5a2570b52
Detection count: 7
File type: Data file
Mime Type: unknown/dat
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: January 28, 2013
Loading...