Home Malware Programs Trojans Trojan.Vicenor.gen!B

Trojan.Vicenor.gen!B

Posted: October 25, 2012

Threat Metric

Ranking: 19,273
Threat Level: 8/10
Infected PCs: 8,619
First Seen: October 25, 2012
Last Seen: February 15, 2025
OS(es) Affected: Windows

Trojan.Vicenor.gen!B (Trojan:Win32/Vicenor.B!gen) is a Trojan that uses the infected computer to generate or 'mine' Bitcoins, a decentralized digital currency. When installed on the corrupted PC, Trojan:Win32/Vicenor.gen!B makes system changes. Trojan.Vicenor.gen!B makes numerous applications run very slowly or take a very long time to load. Trojan.Vicenor.gen!B also drops potentially malicious files and makes registry modifications on the targeted PC. Trojan.Vicenor.gen!B may be downloaded onto the affected computer via a drive-by download through an exploit, or the PC user may download it thinking it is a legal program. Trojan.Vicenor.gen!B includes and executes a Bitcoin mining program, which connects to a Bitcoin server and uses the affected computer's power to generate Bitcoins. This can seriously affect the performance of the attacked computer, making it seem to work slowly. The mining program is run in memory; this means that Trojan.Vicenor.gen!B does not install the program onto the victimized computer, rather it just runs it.

Aliases

Generic_r.CEU [AVG]W32/Injector.IEBG!tr [Fortinet]Trojan-Dropper.Win32.Injector [Ikarus]WORM_DORKBOT.SME [TrendMicro]TR/Drop.Injector.iebg [AntiVir]Trojan-Dropper.Win32.Injector.iebg [Kaspersky]Win32:Kryptik-LNQ [Trj] [Avast]Artemis!1C125564AC63 [McAfee]Generic30.AFDJ [AVG]Adware/Fam.NB [Fortinet]Trojan-Dropper [Ikarus]Malware/Win32.Generic [AhnLab-V3]TR/Dropper.Gen [AntiVir]BackDoor.Spy.1621 [DrWeb]Worm.Win32.Fbchat.var1 [Comodo]
More aliases (312)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Program Files\LanSchool\Student.exe File name: Student.exe
Size: 503.8 KB (503808 bytes)
MD5: ece218209eb4f03087c477225b17219a
Detection count: 4,668
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files\LanSchool\Student.exe
Group: Malware file
Last Updated: February 15, 2025
C:\spywarebegone\SpywareBeGone.exe File name: SpywareBeGone.exe
Size: 1.23 MB (1236992 bytes)
MD5: c01ac1e36d261c57380c160abc165efb
Detection count: 864
File type: Executable File
Mime Type: unknown/exe
Path: C:\spywarebegone
Group: Malware file
Last Updated: October 29, 2012
%PROGRAMFILES%\OApps\bho.dll File name: bho.dll
Size: 92.16 KB (92160 bytes)
MD5: aeef0b9addde840132b7abee25e9631d
Detection count: 513
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\OApps
Group: Malware file
Last Updated: July 29, 2018
C:\Windows\KmsServer\KmsServer.exe File name: KmsServer.exe
Size: 77.82 KB (77824 bytes)
MD5: 6e70834fe1843d0f0b5fad2fee842c39
Detection count: 258
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\KmsServer\KmsServer.exe
Group: Malware file
Last Updated: October 1, 2022
%WINDIR%\msisear.exe File name: msisear.exe
Size: 308.22 KB (308224 bytes)
MD5: 4855c93e3c1f24b0939fee5e6ae8dbac
Detection count: 122
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: October 29, 2012
%APPDATA%\fa36.exe File name: fa36.exe
Size: 293.88 KB (293888 bytes)
MD5: 6d72eb9e0f23d9f6e7b5caeb9b0cc740
Detection count: 74
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: October 25, 2012
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GoogleUp.exe File name: GoogleUp.exe
Size: 346.5 KB (346507 bytes)
MD5: 505bc11dc6eee8f45056b0502b847206
Detection count: 68
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GoogleUp.exe
Group: Malware file
Last Updated: December 14, 2022
%TEMP%\eblmjlsarsyzzuv.exe File name: eblmjlsarsyzzuv.exe
Size: 433.15 KB (433152 bytes)
MD5: 465684a387882a2967ab06480bbd5e41
Detection count: 60
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: April 23, 2013
%APPDATA%\13.exe File name: 13.exe
Size: 422.91 KB (422912 bytes)
MD5: 50bd4125be4f14286694e8d69a58eb2c
Detection count: 50
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 17, 2012
%TEMP%\0050198a.exe File name: 0050198a.exe
Size: 504.32 KB (504320 bytes)
MD5: 3386e9e6db06c5aa6b19d666a37cc227
Detection count: 31
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: February 7, 2013
%APPDATA%\3BA8.exe File name: 3BA8.exe
Size: 229.37 KB (229376 bytes)
MD5: 2d76c3865dd9e9e70f72290bde2e8891
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: April 23, 2013
%WINDIR%\system32\fastsrch.dll File name: fastsrch.dll
Size: 123.39 KB (123392 bytes)
MD5: 437f648f86b789258bcc330211ded8ad
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: October 26, 2012
%PROGRAMFILES%\QuestScan\questscan.dll File name: questscan.dll
Size: 1.01 MB (1019904 bytes)
MD5: 94b4fa83995d510bdab8bf46f3686cfe
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\QuestScan
Group: Malware file
Last Updated: December 17, 2018
%WINDIR%\temp\windvd.exe File name: windvd.exe
Size: 310.27 KB (310272 bytes)
MD5: d1cc70aa60e76879da80303f0f79a894
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\temp
Group: Malware file
Last Updated: May 8, 2013
%TEMP%\dwobkyzerwlstqr.exe File name: dwobkyzerwlstqr.exe
Size: 428.03 KB (428032 bytes)
MD5: 1c125564ac637ed5a7b0e8db0d2cca05
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: May 13, 2013
Loading...