Smitfraud

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 39
First Seen: July 24, 2009
Last Seen: October 31, 2022
OS(es) Affected: Windows

SmitFraud (also known as W32/SmitFraud.A) is a malicious spyware application that may install itself secretly via adware. SmitFraud may also be brought into your computer bundled with a fake codec (that may include the following: BrainCodec, VideoKeyCodec or PCodec). SmitFraud is designed to inject a corrupt code in Windows DLL that usually results in Blue Screen of Death (a nasty desktop modification). SmitFraud may also generate misleading warning messages, in order to scare gullible computer users into buying fraudulent anti-spyware applications. It is strongly recommended to dispose of SmitFraud as soon as possible.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
AVG Generic26.ZUH
Antiy-AVL Trojan/win32.agent.gen
AntiVir TR/Kazy.48076.5
BitDefender Gen:Variant.Kazy.48076
Avast MSIL:Dropper-RL [Drp]
NOD32 a variant of MSIL/Injector.QA
Panda Trj/CI.A
AhnLab-V3 Backdoor/Win32.Gbot
DrWeb Trojan.PWS.Siggen.31019
Comodo Heur.Suspicious
BitDefender Gen:Variant.Kazy.48088
Avast Win32:Cycbot-PJ [Trj]
K7AntiVirus Backdoor
McAfee Artemis!42376AD9EFEF
AVG Win32/Cryptor

SpyHunter Detects & Remove Smitfraud

File System Details

Smitfraud may create the following file(s):
# File Name MD5 Detections
1. 21.exe 49b9be7bcd5826cad36d7dfc9b05dedc 8
2. _ex-68.exe a4e9a63435bc11afc2e14505158a612a 6
3. bscratfud2.exe f1f28a278a68a4a19ae7e09f2e771abe 2
4. MTE3NDI6ODoxNg.exe f7212a74bcec46b93283656ccd886af0 1
5. oembios32.dll e25c0e171d4122f36d0f7c7f67b4a9eb 0
6. oembios32.dll 25ae4f6e51336bb2a454870f40cf0cb1 0
7. wjiio.exe ddc57b76f71a82da9abc05ea00247a15 0
8. retadpu1000106.exe be5edac25bd1450060f93116ede6de88 0
9. retadpu21.exe 3933fa8deca73bd514e6ce3d934ee8a9 0
10. retadpu.exe 5a6b91738dfa140b59ff1b7c36bdf2de 0
11. akylrvamqzjn.exe 280bdc03f8f964e4c91d6ea1f6e61168 0
12. cvajjkohifjam.exe f1f06bee214b2748e7b6b8d189c92370 0
13. byxusss.dll 8cef9f4bb684f88e419f5de46e289bc2 0
14. arpl.exe 01604c6bc08f7dffbcc7d61b523704a5 0
15. ssqnool.dll f62114fa101cca85d3764369f0619a1c 0
16. arpl.exe 6eecbe1e5d39c14533551bf4b20a54c6 0
17. drsmartload45a.exe 44973d6051f7d0a88310866b3532f7e1 0
18. drsmartload1.exe 5bb95c9cf7aa0c066c9667be6e7e64c4 0
19. drsmartload46a.exe d9f95415d24dee922ad9748e918a9363 0
20. atmtd.dll 6d5f90ea52fe0cdc102b14485563eba0 0
21. drsmartload45a.exe d90333f18e27c218cf7efd2b1a30212a 0
22. drsmartload1.exe 4f2229ff7d02086527d44f0b1b24c765 0
23. drsmartload849a.exe d471f4ffd83dc95df6d63076dcdf6cc1 0
24. csrss.exe f7f18b92a3d6f169b05d95cef3e01d37 0
25. services.exe d85e078fed9ce534fa5e2ef999955955 0
26. Update.exe 56615860fde60e74d9d57c77aa45e1b4 0
More files

Registry Details

Smitfraud may create the following registry entry or registry entries:
CLSID
{27321538-5739-4aa1-b84c-7d18e4383f1f}
File name without path
drsmartload2.dat

Related Posts

Trending

Most Viewed

Loading...