Trojan:Win32/Urelas.C
Posted: December 7, 2012
Threat Metric
The following fields listed on the Threat Meter containing a specific value, are explained in detail below:
Threat Level: The threat level scale goes from 1 to 10 where 10 is the highest level of severity and 1 is the lowest level of severity. Each specific level is relative to the threat's consistent assessed behaviors collected from SpyHunter's risk assessment model.
Detection Count: The collective number of confirmed and suspected cases of a particular malware threat. The detection count is calculated from infected PCs retrieved from diagnostic and scan log reports generated by SpyHunter.
Volume Count: Similar to the detection count, the Volume Count is specifically based on the number of confirmed and suspected threats infecting systems on a daily basis. High volume counts usually represent a popular threat but may or may not have infected a large number of systems. High detection count threats could lay dormant and have a low volume count. Criteria for Volume Count is relative to a daily detection count.
Trend Path: The Trend Path, utilizing an up arrow, down arrow or equal symbol, represents the level of recent movement of a particular threat. Up arrows represent an increase, down arrows represent a decline and the equal symbol represent no change to a threat's recent movement.
% Impact (Last 7 Days): This demonstrates a 7-day period change in the frequency of a malware threat infecting PCs. The percentage impact correlates directly to the current Trend Path to determine a rise or decline in the percentage.
| Ranking: | 10,909 |
|---|---|
| Threat Level: | 8/10 |
| Infected PCs: | 8,591 |
| First Seen: | December 7, 2012 |
|---|---|
| Last Seen: | March 8, 2025 |
| OS(es) Affected: | Windows |
Trojan:Win32/Urelas.C is a Trojan that monitors particular card game applications and transmits screenshots and information about a victimized computer to a remote server. Trojan:Win32/Urelas.C also downloads and installs other security threats on the infected computer system. Once installed, Trojan:Win32/Urelas.C makes system changes by adding potentially malicious files and making registry modifications. Computer users may inadvertently download Trojan:Win32/Urelas.C, thinking it is an application associated with a card game. Trojan:Win32/Urelas.C monitors the processes that belong to particular card games.
Technical Details
File System Modifications
Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.
The following files were created in the system:028e31efbe9f6c149fdc45e4c871dc75
File name: 028e31efbe9f6c149fdc45e4c871dc75Size: 2.2 MB (2207232 bytes)
MD5: 028e31efbe9f6c149fdc45e4c871dc75
Detection count: 85
Group: Malware file
Last Updated: March 5, 2013
ebb3f1255cc4e93bf214050eb6b3f43a
File name: ebb3f1255cc4e93bf214050eb6b3f43aSize: 4.85 MB (4859392 bytes)
MD5: ebb3f1255cc4e93bf214050eb6b3f43a
Detection count: 84
Group: Malware file
Last Updated: March 5, 2013
File.exe
File name: File.exeSize: 192.51 KB (192512 bytes)
MD5: c0cf36675be9d874fc661e67ced26ba1
Detection count: 84
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 20, 2017
a4240542d114fb332e81efde95a61434
File name: a4240542d114fb332e81efde95a61434Size: 465.6 KB (465607 bytes)
MD5: a4240542d114fb332e81efde95a61434
Detection count: 82
Group: Malware file
Last Updated: March 5, 2013
7ZSfxNew.exe
File name: 7ZSfxNew.exeSize: 2.2 MB (2200205 bytes)
MD5: b829e686d0e252f6be5c197f156c6745
Detection count: 81
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: March 5, 2013
ctfmom.exe
File name: ctfmom.exeSize: 206.97 KB (206976 bytes)
MD5: 4ec7b4a820ab08dbef615fc889e9b1f5
Detection count: 65
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
%SYSTEMDRIVE%\Users\<username>\AppData\Local\Temp\awopk.exe
File name: awopk.exeSize: 500.26 KB (500269 bytes)
MD5: c5a65490ab06ce30b1ca4a7afd0bea22
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Local\Temp\awopk.exe
Group: Malware file
Last Updated: June 26, 2020
%TEMP%\_uninsep.bat
File name: %TEMP%\_uninsep.batFile type: Batch file
Mime Type: unknown/bat
Group: Malware file
<system folder>\golfinfo.ini
File name: <system folder>\golfinfo.iniMime Type: unknown/ini
Group: Malware file
<system folder>\gbp.ini
File name: <system folder>\gbp.iniMime Type: unknown/ini
Group: Malware file
<system folder>\setup.exe
File name: <system folder>\setup.exeFile type: Executable File
Mime Type: unknown/exe
Group: Malware file
<system folder>\MkUpdate.exe
File name: <system folder>\MkUpdate.exeFile type: Executable File
Mime Type: unknown/exe
Group: Malware file
<system folder>lymucexuc.dll
File name: <system folder>lymucexuc.dllFile type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
<system folder>lyycofez.exe
File name: <system folder>lyycofez.exeFile type: Executable File
Mime Type: unknown/exe
Group: Malware file
Registry Modifications
Regexp file mask%TEMP%\_uinsey.bat%TEMP%\golfinfo.ini%TEMP%\hotez.exeHKEY..\..\{Value}HKEY_LOCAL_MACHINE\SOFTWARE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost "
Leave a Reply
Please note that we are not able to assist with billing and support issues regarding SpyHunter or other products. If you're having issues with SpyHunter, please get in touch with SpyHunter customer support through your SpyHunter . If you have SpyHunter billing questions, we recommend you check the Billing FAQ. For general suggestions or feedback, contact us.