Malware.ST.gen.17

Description: Adware
Risk Level: Critical
Date of First Occurence: Wednesday, July 16, 2008
Software Developer: (unknown)
Brief Info: Adware Software that is displaying pop-up/pop-under windows containing advertisements when the primary user interface is not visible or displayed advertisements are not related to the product.
Removal: This threat can be removed using "Spyware Terminator"

ELIMINAR SPYWARE »

Geographical Distribution of Threat "Malware.ST.gen.17"

Threat Info

View All

Detected Items

  1. Detected Files: %WINDIR%\agpqlrfm.exe MD5: 4699A966D923AD43FD4804155C073C20 Size:155648 MD5: 06B91FACE1E3AD44D5CAC37A0A697F39 Size:102400 MD5: 12BFA0610762804AD480CCC986F8442E Size:176128 MD5: 93CE1C313E4DA2862BFE7AF62F1897E2 Size:102400 MD5: 8704D81195EB5B7DE0EF9D88C3B345D6 Size:102400 MD5: 620947891F70EF414D4CE867832463C5 Size:155648 MD5: 632EDC8F1563841E4433B906BA00A1AA Size:102400 MD5: 3DABE639076AEA4BE21608FEBC95C1B5 Size:155648 MD5: 9B334710842EB5FF61743B3600D7AF2E Size:167936 MD5: E2F231079D09A910BDA01CFFAF11DA9C Size:200704 MD5: 47DF7FFDD5119682D068F0CE8A477816 Size:172032 MD5: 58E0C6601FEDB8CE6B362D4695D18E55 Size:102400 and more.... %WINDIR%\qndsfmao.dll MD5: A1B0DE717BC7CA9E9F74B4C09A3E920F Size:159744 MD5: 4F2ED9CE5035FDFBF760FCFE8C4A422C Size:159744 MD5: 671E14EDFE94F5DB1B1D8CC41B023B2B Size:155648 MD5: 02F7D1498F490B41121118D8E9E05358 Size:192512 MD5: BC4810CF68F009C6CD84A3EEC3F86A30 Size:192512 MD5: 0C6136B7276CD56A8402F4581D3D54CA Size:155648 MD5: 8CEC04F19C68FC787BE444CADEF14A5D Size:159744 MD5: 014BCCAEC3FA31C4D6B314184AEA2947 Size:204800 MD5: 4FDB1BD999094954C9907FEE6143104B Size:159744 MD5: 2666BA000AD048850BC1E834A8CEFD55 Size:159744 MD5: C27B1B9ECD7F0F297BC72A2BCBA4F0EE Size:159744 MD5: 35E83DBD694190BA09B65A557CAE55E4 Size:192512 and more.... %WINDIR%\qndsfmao.dll MD5: A2CE88514C5FE5E083E37CC1E02949FC Size:155648 MD5: 3C638D9EDC2CEF1E611D3D74F330A715 Size:155648 MD5: 55E68DF3863DC5C19265FD785B6D8A8D Size:155648 MD5: C4CEBABCC872E4A3E42BB06E5EB456B0 Size:155648 MD5: 2A93CA20F8C7E5190F7E3183010CFE75 Size:159744 MD5: 9E8572A81ABB7A041F6AC256F08446D6 Size:155648 MD5: 2AC4E45EA570EB93F6625CD141AE4902 Size:159744 MD5: A291653994D9E5C940019146A7D7B148 Size:192512 MD5: E44DCDF7B3E6805E58B15F6837375D6A Size:192512 MD5: A237AA8D5821BB127099BB4D35A68A77 Size:155648 MD5: 6480EFF9EE82B803D1B5A7B313E196F7 Size:159744 MD5: 8BBE7F5AD3053AF209CD8B6A1E778FEA Size:159744 and more.... %WINDIR%\agpqlrfm.exe MD5: 174AB3BB7B3B29DC776E123D3FF9FDBC Size:98304 MD5: D46647673277C5B486D5A00E9C0B736E Size:102400 MD5: 21D3C66FAB5A92441669EA6B46D05861 Size:102400 MD5: 27EEE795DA64734E97393449DFDA2B6A Size:98304 MD5: 020700B526709EFACD5D28AE7F999CBF Size:102400 MD5: 952B054B93E500F35A103ED5098374A7 Size:102400 MD5: E1A9C8B08F4EB1C82C5BC3D38F44E36C Size:102400 MD5: F18F18A9326864B32DE377E57A46F25A Size:163840 MD5: 1BCF6193A789E41DC2D207902F00E6CC Size:155648 MD5: 55BFCD7DAC231FE2D762A03E4889EEAA Size:102400 MD5: 0B7F30D26303C1C587DAEA20F30B6F63 Size:98304 MD5: 13BC47712BF14843480045E8E2A72EE6 Size:167936 and more.... %WINDIR%\qndsfmao.dll MD5: 6ECCCCB863B003421B98B5E7D65DF864 Size:155648 MD5: 8BCC19A2226BB41B7B6382B6340512FA Size:192512 MD5: F513B4480F6FE82A9AAB06CE4D2FEB5F Size:155648 MD5: 9D393F3A529DE16F8BB9EC2939874C8A Size:159744 MD5: 1CB93D6357786B5E90D805EBBC7C9DD3 Size:159744 MD5: 1BC2CD37EC7B92047F5B7C14E33E61EF Size:192512 MD5: B456B62644276AFE5A6D0A8F48E1A609 Size:155648 MD5: F2984E96906B1E80C7FFEF44325DBDFC Size:159744 MD5: C838B96AB25DA7215DC1A8B747448EA7 Size:155648 MD5: 1DA838542FFFBD10020FF19EC6CF325E Size:192512 MD5: 75AEA6C4E167FF5B1D168265CC9D95F7 Size:192512 %WINDIR%\eepo.exe MD5: 9AF075EBD74A6BCE0812B35DA97AE515 Size:163840 %WINDIR%\kgxmotapexd.dll MD5: 6A2E7F1A0F67BC8222FAADE5E522A7F1 Size:458752 %WINDIR%\agpqlrfm.exe MD5: 4A7E3030C030C81A6E003EECC10C8321 Size:163840 MD5: 5E24469D782CBB46BB722D2F2339FF63 Size:155648 MD5: 4F3D01AEF6C182946CE1D8FCD8BDD27F Size:155648 MD5: E3F876C88CEB1801FB38028EDD8756D7 Size:147456 MD5: 836006B63614F3A7504B9A275597B930 Size:155648
  2. Detected Files with variable Filenames: MD5: 5E8B3E05ED43B8E8D1783C79915BE171 Size: 159744 d:\WINDOWS\qndsfmao.dll %WINDIR%\qndsfmao.dll MD5: F31898AF2C058134CD13B50C75184B37 Size: 483328 d:\WINDOWS\kgxmotapexd.dll %WINDIR%\kgxmotapexd.dll MD5: 49773001527F2C63F525EAD821B108A8 Size: 172032 d:\WINDOWS\agpqlrfm.exe %WINDIR%\agpqlrfm.exe

Detecting items list:

  1. Files by Name %WINDIR%\agpqlrfm.exe %WINDIR%\qndsfmao.dll %WINDIR%\kgxmotapexd.dll
  2. Files by MD5 MD5: 49773001527F2C63F525EAD821B108A8 Size: 172032 MD5: 5E8B3E05ED43B8E8D1783C79915BE171 Size: 159744 MD5: 9AF075EBD74A6BCE0812B35DA97AE515 Size: 163840 MD5: F31898AF2C058134CD13B50C75184B37 Size: 483328
  3. Files by CLSID or Name CLSID=9BAB10CC-0EE5-4B15-9017-B7AF2326724D CLSID=CC7A93B7-2698-4A5F-A745-3074CB042395 CLSID=7E1C93A1-907F-4F3F-955A-5B46BA08457D CLSID=05721FB0-2C8D-41A1-BEF7-0957168A3502 CLSID=14CF3567-2DC2-4BDC-991A-CBDDDC1D4374

« Go to Software Database