Home Malware Programs Worms Win32/Taterf.B

Win32/Taterf.B

Posted: February 19, 2009

Threat Metric

Threat Level: 9/10
Infected PCs: 6,371
First Seen: July 24, 2009
Last Seen: June 9, 2023
OS(es) Affected: Windows

Win32/Taterf.B, also known as Trojan.Lineage.Gen!Pac3, PWS-Gamania.gen.a, and Mal/EncPk-CE, is a miscreant worm created with the dangerous capabilities of stealing your sensitive personal information such as user names and passwords. The Win32/Taterf.B worm appears to attack visitors of online games. The Win32/Taterf.B worm maliciously attempts to disable your PC's anti-virus and anti-spyware programs in order not to be removed from your system. If you suspect that you are infected with the Win32/Taterf.B worm, remove it immediately.

Win32/Taterf.B

Aliases

SHeur2.AWLI [AVG]Win32/Frethog.FAB [eTrust-Vet]Troj/Agent-KVP [Sophos]Trojan.PWS.Wsgame.12824 [DrWeb]TrojWare.Win32.PSW.OnLineGames.NNU69 [Comodo]Trojan.PWS.OnlineGames.KCRO [BitDefender]Trojan-GameThief.Win32.Magania.busx [Kaspersky]Win32.GenericPWS.Ak [eSafe]W32/Trojan3.BER [F-Prot]TrojanGameThief.Magania.busx [CAT-QuickHeal]W32/OnlineGames.FND!tr.pws [Fortinet]Worm.Generic.52663 [BitDefender]Win.Trojan.Agent-48158 [ClamAV]W32/Magania.RX [F-Prot]W32/Lineage.KGT [Panda]
More aliases (1650)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Users\<username>\AppData\Local\S-1-5-31-1286970278978-5713669491-166975984-320\Rotinom\lpl.exe File name: lpl.exe
Size: 180.22 KB (180224 bytes)
MD5: 066e35aed18f9a36a8bc18cff3a87333
Detection count: 215
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\S-1-5-31-1286970278978-5713669491-166975984-320\Rotinom\lpl.exe
Group: Malware file
Last Updated: January 8, 2021
%WINDIR%\TEMP\GuardGuard.exe File name: GuardGuard.exe
Size: 266.42 KB (266424 bytes)
MD5: c09876c94545d84c462f649428fe0026
Detection count: 103
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP
Group: Malware file
Last Updated: May 17, 2020
%WINDIR%\system32\ahnsbsb.exe File name: ahnsbsb.exe
Size: 165.58 KB (165586 bytes)
MD5: 2a4c67aca49cdd25e85abedc008b1b37
Detection count: 84
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: April 13, 2011
%WINDIR%\system32\oukdfgr.exe File name: oukdfgr.exe
Size: 172.26 KB (172261 bytes)
MD5: 43b89c78c63765765e8fe16d8478cfaa
Detection count: 83
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: June 16, 2011
C:\System Volume Information\_restore{1BA2C6D0-F14B-429B-A981-CB0CFCBC3B82}\RP10\A0002912.exe File name: A0002912.exe
Size: 175.61 KB (175616 bytes)
MD5: 1b4a820a759cd1aa7ba7745bfe01f3c5
Detection count: 80
File type: Executable File
Mime Type: unknown/exe
Path: C:\System Volume Information\_restore{1BA2C6D0-F14B-429B-A981-CB0CFCBC3B82}\RP10\A0002912.exe
Group: Malware file
Last Updated: February 19, 2021
C:\Users\<username>\Desktop\Backup\Desktop\pennetta nera\Catalogo\chiavetta nera\_\b9v.exe File name: b9v.exe
Size: 175.1 KB (175104 bytes)
MD5: e58ad675c7b1054e85631e8679ac60e3
Detection count: 66
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Desktop\Backup\Desktop\pennetta nera\Catalogo\chiavetta nera\_\b9v.exe
Group: Malware file
Last Updated: June 9, 2023
C:\Users\<username>\AppData\Local\Temp\HBCD\recup_dir.1\f0616152.exe File name: f0616152.exe
Size: 182.27 KB (182272 bytes)
MD5: 4f72ed9691c8678493fa27fd7bf58c26
Detection count: 66
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\Temp\HBCD\recup_dir.1\f0616152.exe
Group: Malware file
Last Updated: January 11, 2023
%WINDIR%\system32\kxvo.exe File name: kxvo.exe
Size: 148.49 KB (148497 bytes)
MD5: ae4b6f57606f4fcf40a11e867bd66ab3
Detection count: 65
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: October 15, 2012
G:\kyme.exe File name: kyme.exe
Size: 174.59 KB (174592 bytes)
MD5: b6196aa113acd2a476a902c080545fcf
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Path: G:\kyme.exe
Group: Malware file
Last Updated: January 4, 2022
%WINDIR%\system32\arking.exe File name: arking.exe
Size: 187.39 KB (187392 bytes)
MD5: 4882b3229cd7195a2145984f45c345c0
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 9, 2011
%TEMP%\olhrwef.exe File name: olhrwef.exe
Size: 107.69 KB (107692 bytes)
MD5: dcef55fbe9f582bf969d103f3d82f370
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: January 23, 2013
D:\l61yyp.exe File name: l61yyp.exe
Size: 114.92 KB (114924 bytes)
MD5: 90df1a4489670e3b36c368b7822f5338
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: D:\l61yyp.exe
Group: Malware file
Last Updated: August 17, 2022
%WINDIR%\system32\kva8wr.exe File name: kva8wr.exe
Size: 174.85 KB (174855 bytes)
MD5: 24d214aa2dc94b0115154d79f093c809
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 28, 2013
C:\Windows\ConfigSetRoot\biriprg.exe File name: biriprg.exe
Size: 117.76 KB (117760 bytes)
MD5: 3bb0ce6249f50f9db051e5260cfa43aa
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\ConfigSetRoot\biriprg.exe
Group: Malware file
Last Updated: April 11, 2022
%WINDIR%\system32\hgaaaa.exe File name: hgaaaa.exe
Size: 266.75 KB (266752 bytes)
MD5: 2fc487d825decef6eac9b442f7d6d737
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: April 4, 2011
%WINDIR%\system32\vamsoft.exe File name: vamsoft.exe
Size: 108.32 KB (108326 bytes)
MD5: e39fa0f4e230bf590dd2bf529bd05d76
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 8, 2010
%WINDIR%\system32\rttrwq.exe File name: rttrwq.exe
Size: 105 KB (105003 bytes)
MD5: 36e7d4735c888cd24e1732c1a499910d
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: March 7, 2011
C:\System Volume Information\_restore{66417A6E-C993-46E2-B0B9-F22CAE1AE3A1}\RP42\A0004425.exe File name: A0004425.exe
Size: 107.04 KB (107045 bytes)
MD5: 97893d7c4984cc1b6e41c4ef598bb9d6
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: C:\System Volume Information\_restore{66417A6E-C993-46E2-B0B9-F22CAE1AE3A1}\RP42\A0004425.exe
Group: Malware file
Last Updated: November 23, 2021
%WINDIR%\system32\kamsoft.exe File name: kamsoft.exe
Size: 105.09 KB (105097 bytes)
MD5: 451f18694bbc49150683fe7b2bac5322
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: April 16, 2013

More files
Loading...