Home Malware Programs Trojans TrojanSpy:Win64/Ursnif.G

TrojanSpy:Win64/Ursnif.G

Posted: October 17, 2012

Threat Metric

Ranking: 14,653
Threat Level: 8/10
Infected PCs: 232
First Seen: October 17, 2012
Last Seen: September 17, 2023
OS(es) Affected: Windows

Aliases

W32/KRYPTIK.AHC!tr [Fortinet]Artemis!F4C62F187515 [McAfee-GW-Edition]Mal/Ransom-W [Sophos]HEUR:Trojan.Win32.Generic [Kaspersky]Generic2.KTN [AVG]W32/MalwareS.APGC [F-Prot]Adware-FlashGet [McAfee]Trj/CI.A [Panda]Generic29.CLHD [AVG]W32/Agent.ABAE!tr [Fortinet]Trojan.Msil [Ikarus]TR/Dropper.Gen6 [AntiVir]Trojan.DownLoader7.7477 [DrWeb]Trojan.MSIL.Agent.abae [Kaspersky]Artemis!BD2D4AD874E1 [McAfee]
More aliases (42)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



E:\copy\Aterlin-2\FlashGet\flashget.BAK File name: flashget.BAK
Size: 1.48 MB (1482752 bytes)
MD5: e64a39c65bcef6a1b8d8e4de55d9a3a8
Detection count: 148
Mime Type: unknown/BAK
Path: E:\copy\Aterlin-2\FlashGet\flashget.BAK
Group: Malware file
Last Updated: September 17, 2023
%TEMP%\certNtfs64.dll File name: certNtfs64.dll
Size: 62.46 KB (62464 bytes)
MD5: 330557112dd3258f498d5731aeaaf4f6
Detection count: 96
File type: Dynamic link library
Mime Type: unknown/dll
Path: %TEMP%
Group: Malware file
Last Updated: October 17, 2012
%SystemDrive%\Users\<username>\Documents\73b26257.dll File name: 73b26257.dll
Size: 134.65 KB (134656 bytes)
MD5: f4c62f1875159947ffefe82adbe2f420
Detection count: 90
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Users\<username>\Documents
Group: Malware file
Last Updated: October 29, 2012
%SystemDrive%\Users\<username>\AppData\Local\Temp\teamviewer.dll File name: teamviewer.dll
Size: 122.36 KB (122368 bytes)
MD5: ca42e2329ee7728e330e1a8c2fb3654c
Detection count: 33
File type: Dynamic link library
Mime Type: unknown/dll
Path: %SystemDrive%\Users\<username>\AppData\Local\Temp
Group: Malware file
Last Updated: October 22, 2012
Loading...