Home Malware Programs Backdoors Afcore.gen!G

Afcore.gen!G

Posted: December 20, 2010

Threat Metric

Ranking: 16,686
Threat Level: 8/10
Infected PCs: 185
First Seen: December 20, 2010
Last Seen: October 11, 2023
OS(es) Affected: Windows

Aliases

Suspicious file [Panda]Worm.Win32.Rokut [Ikarus]Sus/BancDl-A [Sophos]TR/Spy.Banker.Gen [AntiVir]Trojan.DownLoader.origin [DrWeb]Gen:Trojan.Heur.DP.VGW@auowZtmG [BitDefender]Win32:Rootkit-gen [Avast]Trj/Hmir.F [Panda]Downloader.Generic10.RBV [AVG]Trojan-Downloader.Win32.Genome [Ikarus]Trojan-Spy.Win32.Zbot.gen (v) [Sunbelt]Downloader/Win32.Genome [AhnLab-V3]Trojan/Win32.Genome.gen [Antiy-AVL]TR/Crypt.ZPACK.Gen [AntiVir]Trojan.MulDrop1.45234 [DrWeb]
More aliases (55)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\advantage\AdVantage.exe File name: AdVantage.exe
Size: 181.76 KB (181760 bytes)
MD5: 9642b29cd78f9d6629436997047593d9
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\advantage
Group: Malware file
Last Updated: December 21, 2010
%APPDATA%\advantage\AdVantage.exe File name: AdVantage.exe
Size: 126.46 KB (126464 bytes)
MD5: b06372cf92e261cf57d40bacdf9747c4
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\advantage
Group: Malware file
Last Updated: June 29, 2020
C:\drivers\ie8.exe File name: ie8.exe
Size: 778.75 KB (778752 bytes)
MD5: 8b2a19b18cd570f99f56608e4835caac
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: C:\drivers
Group: Malware file
Last Updated: December 23, 2010
%PUBLIC%\HEX-5823-6893-6818\jutched.exe File name: jutched.exe
Size: 40.96 KB (40960 bytes)
MD5: a7d6a45c2f21c2051e5902bb7563cab3
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%\HEX-5823-6893-6818
Group: Malware file
Last Updated: December 22, 2010

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%PUBLIC%\GUP.exe%PUBLIC%\libcurl.dll%PUBLIC%\sodom.txt
Loading...