Home Malware Programs Backdoors Backdoor: Win32/Turkojan.AI

Backdoor: Win32/Turkojan.AI

Posted: April 19, 2011

Threat Metric

Ranking: 16,710
Threat Level: 6/10
Infected PCs: 1,213
First Seen: May 16, 2011
Last Seen: September 9, 2023
OS(es) Affected: Windows

Backdoor: Win32/Turkojan.AI is a malicious backdoor trojan that is able to exploit system vulnerabilities and expose the computer system to further malware threats. Backdoor: Win32/Turkojan.AI gives unauthorized user's access to a hacker for a targeted user's computer. Backdoor: Win32/Turkojan.AI is able to collect personal details, such as usernames and online banking details, and then transmit the stolen information to a remote criminal. Remove Backdoor: Win32/Turkojan.AI immediately in order to avoid damage it could laed to.

Backdoor: Win32/Turkojan.AI

Aliases

Heuristic.BehavesLike.Win32.ModifiedUPX.C [McAfee-GW-Edition]Trojan/Win32.Typic.gen [Antiy-AVL]Win32.BDSTurkojan.Im [eSafe]Heuristic.BehavesLike.Win32.Packed.A [McAfee-GW-Edition]Backdoor.Turkojan.di.n3 [CAT-QuickHeal]Trojan/Win32.Turkojan [AhnLab-V3]Backdoor.Win32.Turkojan.cma [Kaspersky]Win32:Morphine-CD [Trj] [Avast]Backdoor [K7AntiVirus]Trj/Thed.A [Panda]Win32/Themida [AVG]W32/Packed.2D18!tr [Fortinet]BehavesLikeWin32.ExplorerHijack [Ikarus]Packed/Win32.Black [AhnLab-V3]BDS/Backdoor.Gen [AntiVir]
More aliases (181)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\crypt3232.exe File name: crypt3232.exe
Size: 1.37 MB (1379328 bytes)
MD5: 9a2a46532076b3fcd2b53032243b2bb3
Detection count: 92
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: May 18, 2011
C:\078.dll File name: 078.dll
Size: 806.91 KB (806912 bytes)
MD5: 3f24b5aad1cd9562fc2c2f78ea49a723
Detection count: 33
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:
Group: Malware file
Last Updated: May 20, 2011
%WINDIR%\mstwain32.exe File name: mstwain32.exe
Size: 1.7 MB (1708544 bytes)
MD5: 2bd9eb20544cddbcf60996991ca41ead
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: June 2, 2011
%PROGRAMFILES%\Bonjour\mDNSResponder.exe File name: mDNSResponder.exe
Size: 349.47 KB (349472 bytes)
MD5: 296029c85370ee21acf43c4871513f2b
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Bonjour
Group: Malware file
Last Updated: January 10, 2022
%APPDATA%\Microsoft\conhost.exe File name: conhost.exe
Size: 175.61 KB (175616 bytes)
MD5: 3b5b1ccb7e070824e6e760dd6af2c7c6
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft
Group: Malware file
Last Updated: May 20, 2011
%WINDIR%\System32\Sodmdxr.dll File name: Sodmdxr.dll
Size: 215.04 KB (215040 bytes)
MD5: 3a702ac93f773477163f33db0d1e936e
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\System32
Group: Malware file
Last Updated: May 18, 2011
%APPDATA%\AntiVirus_AntiSpyware_2011\AntiVirus AntiSpyware.exe File name: AntiVirus AntiSpyware.exe
Size: 3.06 MB (3060736 bytes)
MD5: 15d1aa8bb5c6037dbf6ed319bbe9b918
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\AntiVirus_AntiSpyware_2011
Group: Malware file
Last Updated: May 20, 2011
Loading...