Home Malware Programs Trojans Trojan.Yoddos.C

Trojan.Yoddos.C

Posted: September 21, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 820
First Seen: September 21, 2012
OS(es) Affected: Windows

Aliases

SHeur4.ALIM [AVG]Virus.Win32.Ramnit [Ikarus]Backdoor/Win32.Azbreg [AhnLab-V3]TR/Kryptik.jpi.3 [AntiVir]Backdoor.Win32.Azbreg.ctk [Kaspersky]Artemis!AF651FD99F3E [McAfee]Backdoor.Azbreg.ctk [CAT-QuickHeal]Suspicious file [Panda]W32/ZAccess.VARC!tr [Fortinet]Backdoor.Win32.ZAccess.yoi [Kaspersky]ZeroAccess.hg [McAfee]Agent3.BPQQ [AVG]W32/Agent.SEGP!tr [Fortinet]Trojan.Win32.Agent [Ikarus]Trojan/Win32.Agent.gen [Antiy-AVL]
More aliases (126)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SystemDrive%\RECYCLER\S-1-5-21-484763869-1078145449-1606980848-500\$f17f89ca568fdcf48208f607164333df\n. File name: n.
Size: 47.1 KB (47104 bytes)
MD5: d55fd88880fe8e8d3e41a156fb015b1d
Detection count: 199
Path: %SystemDrive%\RECYCLER\S-1-5-21-484763869-1078145449-1606980848-500\$f17f89ca568fdcf48208f607164333df
Group: Malware file
Last Updated: September 25, 2012
%USERPROFILE%\M-25-6788-7854-2457\winmgr.exe File name: winmgr.exe
Size: 183.8 KB (183808 bytes)
MD5: 2679ab25acaa7c204edfe4376db13c00
Detection count: 136
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\M-25-6788-7854-2457
Group: Malware file
Last Updated: September 25, 2012
%SystemDrive%\RECYCLER\S-1-5-21-1757981266-796845957-725345543-500\$718631f61bcee6dda23f6ffaab85b323\n. File name: n.
Size: 49.15 KB (49152 bytes)
MD5: cf2b74dadb89b95881f37c3a144c0aaf
Detection count: 40
Path: %SystemDrive%\RECYCLER\S-1-5-21-1757981266-796845957-725345543-500\$718631f61bcee6dda23f6ffaab85b323
Group: Malware file
Last Updated: October 5, 2012
%LOCALAPPDATA%\rkdvplxh\aqriaoht.exe File name: aqriaoht.exe
Size: 94.12 KB (94120 bytes)
MD5: af651fd99f3ec00cdee8263217d07c7a
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\rkdvplxh
Group: Malware file
Last Updated: October 5, 2012
%WINDIR%\system32\WinHelp32.exe File name: WinHelp32.exe
Size: 27.13 KB (27136 bytes)
MD5: c284ea06cafc0d38c2f5d39442a877b2
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: September 25, 2012
%USERPROFILE%\Local Settings\Temp\msniixwbo.pif File name: msniixwbo.pif
Size: 48.12 KB (48128 bytes)
MD5: e1c97d4b6a3ae03005819e7aad6a1b5c
Detection count: 12
Mime Type: unknown/pif
Path: %USERPROFILE%\Local Settings\Temp
Group: Malware file
Last Updated: September 25, 2012
%USERPROFILE%\Local Settings\Temp\msanxcyii.exe File name: msanxcyii.exe
Size: 102.4 KB (102400 bytes)
MD5: 5e4203b7042592dc9901c6b714374972
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Temp
Group: Malware file
Last Updated: September 25, 2012
%SystemDrive%\Users\<username>\AppData\Roaming\Microsoft\Windows\Templates\webengine.exe File name: webengine.exe
Size: 7.68 KB (7680 bytes)
MD5: 58e85b2d813117e37fdfb37af71e0efd
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Users\<username>\AppData\Roaming\Microsoft\Windows\Templates
Group: Malware file
Last Updated: September 25, 2012
Loading...