Home Malware Programs Trojans Trojan.VB.AGB

Trojan.VB.AGB

Posted: January 16, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 176
First Seen: January 16, 2012
Last Seen: December 17, 2021
OS(es) Affected: Windows

Aliases

Artemis!89AA7514FBBE [McAfee-GW-Edition]a variant of Win32/Injector.NYO [NOD32]Generic BackDoor.xd [McAfee]Mal/FakeAV-OY [Sophos]Suspicious.Mystic [Symantec]a variant of Win32/Kryptik.UXM [NOD32]Agent3.AOGP [AVG]Trojan.Win32.Buzus [Ikarus]Packed/Win32.Katusha [AhnLab-V3]Packed/Win32.Katusha.gen [Antiy-AVL]Mal/FakeAV-OC [Sophos]Artemis!2EF3C7221B56 [McAfee-GW-Edition]TR/Crypt.XPACK.Gen [AntiVir]Trojan.Siggen3.7158 [DrWeb]Packed.Win32.Krap.AS [Comodo]
More aliases (128)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\x3nqiuapnjym32vhezlerz3agxosqwdx2\svcnost.exe File name: svcnost.exe
Size: 148.48 KB (148480 bytes)
MD5: e85e3e336b2013def1377683b283bf79
Detection count: 93
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\x3nqiuapnjym32vhezlerz3agxosqwdx2
Group: Malware file
Last Updated: January 19, 2012
%WINDIR%\system32\fa78.dll File name: fa78.dll
Size: 946.17 KB (946176 bytes)
MD5: fed3036250625251b6164c4623a3843f
Detection count: 42
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 17, 2012
C:\Users\<username>\AppData\Roaming\12EE.tmp File name: 12EE.tmp
Size: 48.12 KB (48128 bytes)
MD5: 7ab15f875fea05622f367e86f555b1d2
Detection count: 42
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Roaming\12EE.tmp
Group: Malware file
Last Updated: August 27, 2022
%WINDIR%\System32\drivers\ipsec.sys File name: ipsec.sys
Size: 75.26 KB (75264 bytes)
MD5: d6fe48d1223a51df270469ae4cb0e4d9
Detection count: 21
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: January 19, 2012
%WINDIR%\System32\drivers\dfsc.sys File name: dfsc.sys
Size: 75.26 KB (75264 bytes)
MD5: eadef15138ad2f2b7f8c479d96d1debd
Detection count: 16
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: January 17, 2012
%USERPROFILE%\Start Menu\Programs\Startup\i1eaavmm.exe File name: i1eaavmm.exe
Size: 91.64 KB (91648 bytes)
MD5: c767fee713a4c773e188ce9e11cd0576
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: January 27, 2012
%SystemDrive%\Documents and Settings\Administrator\Start Menu\Programs\Startup\xupoeb.exe File name: xupoeb.exe
Size: 153.08 KB (153088 bytes)
MD5: 89aa7514fbbef41f9b9190dba8031129
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Documents and Settings\Administrator\Start Menu\Programs\Startup
Group: Malware file
Last Updated: March 13, 2012
%USERPROFILE%\Application Data\ScanDisc.exe File name: ScanDisc.exe
Size: 269.31 KB (269312 bytes)
MD5: 2ef3c7221b56376966547aa3151397bb
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Application Data
Group: Malware file
Last Updated: January 24, 2012
Loading...