Home Malware Programs Trojans Trojan.Stoberox.A

Trojan.Stoberox.A

Posted: March 6, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 5,382
First Seen: March 6, 2012
Last Seen: July 8, 2024
OS(es) Affected: Windows

Trojan.Stoberox.A is a Trojan that can steal a victim's personal information, download and install other PC threats and damage the targeted computer system. Computer users can unknowingly infect their PCs with Trojan.Stoberox.A by downloading unknown supposedly free applications, opening spam email attachments, or clicking malicious links. Trojan.Stoberox.A enters the compromised machine without a PC user's permission and knowledge. Trojan.Stoberox.A may pretend to be a legitimate program. Once installed on the victimized PC, Trojan.Stoberox.A can create registry entries and drop malicious files. Trojan.Stoberox.A slows down the PC's performance and gathers the email addresses of affected computer owners' contacts to send unexpected email messages to their friends with their names without victims' consent.

Aliases

Dropper.Generic6.CHFR [AVG]Virus.Delf [Ikarus]Mal/BcCheMan-A [Sophos]TR/Crypt.XPACK.Gen8 [AntiVir]Win32:Ranbyus-V [Trj] [Avast]Artemis!4D33C7A0604F [McAfee]W32/Medfos.N!tr [Fortinet]TR/Rogue.KD.861510 [AntiVir]Trojan.Win32.Midhos.avsg [Kaspersky]Trojan-FAYM!A707092E636A [McAfee]RemoteAdmin.CKA [AVG]Backdoor.BAT.Agent [Ikarus]HackTool/Win32.RemoteAdmin [AhnLab-V3]not-a-virus:RemoteAdmin.Win32.RMS.a [Kaspersky]Artemis!62DBD11DC367 [McAfee]
More aliases (837)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\xoijmehdxykf.exe File name: xoijmehdxykf.exe
Size: 113.15 KB (113152 bytes)
MD5: 78ec15fe2267d7ec7978eb6966f8cfaf
Detection count: 272
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%
Group: Malware file
Last Updated: January 23, 2013
C:\Program Files (x86)\Portrait Professional Studio 9\PortraitProfessionalStudio.exe File name: PortraitProfessionalStudio.exe
Size: 9.83 MB (9835008 bytes)
MD5: 16d41af8e46d4edbcefcd0c6ae8249fb
Detection count: 206
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\Portrait Professional Studio 9\PortraitProfessionalStudio.exe
Group: Malware file
Last Updated: February 4, 2024
%APPDATA%\bdpisf.dll File name: bdpisf.dll
Size: 174.59 KB (174592 bytes)
MD5: a707092e636aa1f1987f692de3506d56
Detection count: 94
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: February 22, 2013
%APPDATA%\Shockwave Player\flashplugin.exe File name: flashplugin.exe
Size: 165.37 KB (165376 bytes)
MD5: 18620cb65e066b5565c67d60dcac267f
Detection count: 63
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Shockwave Player
Group: Malware file
Last Updated: January 23, 2013
%APPDATA%\Microsoft\Windows\Templates\CertPolEng.exe File name: CertPolEng.exe
Size: 6.14 KB (6144 bytes)
MD5: cb1c56b2229883d2c6f3a534efcad04f
Detection count: 63
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Templates
Group: Malware file
Last Updated: January 23, 2013
%APPDATA%\rehcor.dll File name: rehcor.dll
Size: 181.76 KB (181760 bytes)
MD5: 53c5e731c981b0c7b7c18c26c5b30a0e
Detection count: 56
File type: Dynamic link library
Mime Type: unknown/dll
Path: %APPDATA%
Group: Malware file
Last Updated: January 23, 2013
19805d826a46121178003721d4df717b File name: 19805d826a46121178003721d4df717b
Size: 192.51 KB (192512 bytes)
MD5: 19805d826a46121178003721d4df717b
Detection count: 42
Group: Malware file
Last Updated: January 22, 2013
%WINDIR%\Temp\temp94.exe File name: temp94.exe
Size: 847.87 KB (847872 bytes)
MD5: 766e2f0ed09ae29273dd014714b3b0e5
Detection count: 34
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Temp
Group: Malware file
Last Updated: January 23, 2013
%WINDIR%\Installer\{GZ53034E-566C-477E-BA56-93AFA4DE6095}\setup.exe File name: setup.exe
Size: 430.08 KB (430080 bytes)
MD5: f2cb88da7e3586c3ed878c157b6028f9
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Installer\{GZ53034E-566C-477E-BA56-93AFA4DE6095}
Group: Malware file
Last Updated: January 23, 2013
%SystemDrive%\win7xe\up.exe File name: up.exe
Size: 3.15 MB (3150336 bytes)
MD5: 7c87b6bf544c873ef3176c322f46a0ab
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\win7xe
Group: Malware file
Last Updated: January 23, 2013
%SystemDrive%\Users\<username>\AppData\Roaming\csrsss.exe File name: csrsss.exe
Size: 144.38 KB (144384 bytes)
MD5: 39d14d8d96118ee8e18b5ad4d4800b8e
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: January 28, 2013
%LOCALAPPDATA%\lollipop\wnphpi.exe File name: wnphpi.exe
Size: 794.62 KB (794624 bytes)
MD5: ace39e52dfb49e1417d8721779c589ae
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\lollipop
Group: Malware file
Last Updated: January 23, 2013
%TEMP%\1404258.txt File name: 1404258.txt
Size: 53.24 KB (53248 bytes)
MD5: 9a8521952e98ea7157b74adb5b20f525
Detection count: 9
Mime Type: unknown/txt
Path: %TEMP%
Group: Malware file
Last Updated: January 23, 2013
%PROGRAMFILES(x86)%\RelevantKnowledge\rlvknlg.exe File name: rlvknlg.exe
Size: 3.34 MB (3345456 bytes)
MD5: 44682cb3ef2337908814dd6faeaf67b6
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\RelevantKnowledge
Group: Malware file
Last Updated: August 27, 2020
%LOCALAPPDATA%\NeroVision!UninstallKey\NeroVision!UninstallKey.pif File name: NeroVision!UninstallKey.pif
Size: 98.3 KB (98304 bytes)
MD5: 7c6e2e8aba20b31c6d845a8467c42edf
Detection count: 5
Mime Type: unknown/pif
Path: %LOCALAPPDATA%\NeroVision!UninstallKey
Group: Malware file
Last Updated: December 20, 2012
%WINDIR%\system32\vaio messengermonitor.exe File name: vaio messengermonitor.exe
Size: 125.44 KB (125440 bytes)
MD5: 8a503c1d6ea83b5309717853bef4b57f
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 23, 2013
%ALLUSERSPROFILE%\Application Data\zzzalzl\cvrxmsm.exe File name: cvrxmsm.exe
Size: 111.1 KB (111104 bytes)
MD5: 46136ce758a7dc3d5e94cd7802a8e5c6
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Application Data\zzzalzl
Group: Malware file
Last Updated: January 23, 2013
%APPDATA%\torrent\NwTray.exe File name: NwTray.exe
Size: 134.14 KB (134144 bytes)
MD5: 10ad74c977ad15c5d740c22872b58545
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\torrent
Group: Malware file
Last Updated: January 23, 2013
%LOCALAPPDATA%\mmeyscxd\usvldfeq.exe File name: usvldfeq.exe
Size: 100.98 KB (100980 bytes)
MD5: f70c94d8ede339eca1f8955e7bfd3539
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\mmeyscxd
Group: Malware file
Last Updated: January 23, 2013
%USERPROFILE%\Sesras.exe File name: Sesras.exe
Size: 445.44 KB (445440 bytes)
MD5: 66a2ab3d0df8cb7973541c1c0d111460
Detection count: 1
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: January 23, 2013

More files
Loading...