Trojan.Reveton.Q

Aliases: Generic32.AHNM [AVG], W32/Foreign.ANLU!tr [Fortinet], a variant of Win32/Kryptik.AXSZ, Hoax.Foreign, Gen:Variant.Kazy.159061 (B), Trojan.Win32.Kryptik.axlm (v), Trojan.Winlock.8157 [DrWeb], Gen:Variant.Kazy.159033 [F-Secure], Trojan-Ransom.Win32.Foreign.azig [Kaspersky], Win32:Reveton-PE [Trj] [Avast], TROJ_RANSOM.SM0B, Kryptik.BKMT, Trojan.Ransomlock!g49 [Symantec], RDN/Ransom!bq [McAfee] and Gen:Variant.Kazy.159061.

Technical Information

File System Details

Trojan.Reveton.Q creates the following file(s):
# File Name Size MD5 Detection Count
1 %SystemDrive%\Users\Mark\3898673.dll 95,232 a1ac9daefa3b6db5b8c10428b92c5b56 3
2 %SystemDrive%\Users\Kazi\2372256.dll 107,520 d03b8fca405785ca12541a771089efe9 2
3 %USERPROFILE%5691012.dll 93,184 125646e1ac0237399955941832ecb9be 1
4 %SystemDrive%\Users\gabe\4135956.dll 101,888 7e7a55e81e1eb99d76a74efce32eb523 1
5 %USERPROFILE%_23946935.dll 126,976 7e53838e956fa3f1b295d05666693709 1
6 %SystemDrive%\Users\Owen\2144108.dll 95,744 b1c1551dfa65cbc3761f842d31c56b1e 1
7 %SystemDrive%\Users\mateusz.mi?kwicz\8314519.dll 93,696 a777a061cafdb3f59c2af651f476e1f4 1
8 %USERPROFILE%2201583.dll 93,696 8c264d18a6b14f6d85598df551b55b8e 1
9 %SystemDrive%\Users\Lewis\AppData\Local\Temp\wpbt0.dll 140,288 363c821f965bd9ce4e207b81f5438a98 1
10 %SystemDrive%\Users\Jacques\4924799.dll 79,872 71cb2c495f7f8fe5967b20e697714613 1
11 C:\Users\office-01\6837269.dll 141,312 a9ce5e2ca56cdd397f1b81350610a956 1
12 %SystemDrive%\Users\sundip\2948044.dll 83,456 4024b577351c8bc29e16d8e2f311a5f6 1
13 %USERPROFILE%452324.exe 143,360 bfe377a78c4f30c1062cc94167b2c3f3 1
14 D:\Users\pascal\5066713.dll 92,160 6977763cb920c1ca5f7ec9530a57657f 1
15 %USERPROFILE%1882398.dll 92,160 6ccb6268230afa6740da9d166b0e0e85 1
16 %SystemDrive%\Users\Guest\AppData\Local\Temp\0.8794304990498534.exe 92,160 de80d02c7dc59b22b1cb4d5373c85496 1
17 %SystemDrive%\Users\Cosimo\3725554.dll 95,232 c07793bd5dbff3547c7744e124ec8318 1
18 %USERPROFILE%8863872.dll 110,592 92d9c4a6fc2c4e594153422fe3afef56 1
19 %ALLUSERSPROFILE%\Local Settings\Temp\msjmqkxw.scr 44,903 42e73c904ec37a84e0208f811f599175 1
20 %SystemDrive%\Users\Owner\4415931.dll 94,208 f80fee89555c6e042390d4859b6e2171 1
21 %SystemDrive%\Users\Matthias\1201666.dll 118,784 02c9cc07baa4c195912230f63cdf0d9a 1
22 %SystemDrive%\Users\Guest\7337557.dll 99,328 2c7210cb9f230f4340a421c1ba2a0f8e 1
23 %SystemDrive%\Users\Texsource-Texas\5643314.dll 99,328 2db164c3f5d5ee990951573e86725267 1
24 %SystemDrive%\Users\da.3AD\2212455.dll 101,888 49a1d5824a400b66f24a628aa2f0c03d 1
25 %SystemDrive%\Users\John\8245682.dll 102,400 04fda1830586d2694d69de2a3cd4d0c7 1
26 %SystemDrive%\Users\Guest\1199574.dll 94,208 b7d45a081a6df32711b560bd25d689a1 1
27 %USERPROFILE%6998135.dll 112,128 092f902302a98569c4894c810b4b2828 1
28 %SystemDrive%\Users\mary\7659021.dll 140,288 5b8f8e183739927552404a279182ce74 1
More files

Site Disclaimer

Enigmasoftware.com is not associated, affiliated, sponsored or owned by the malware creators or distributors mentioned on this article. This article should NOT be mistaken or confused in being associated in any way with the promotion or endorsement of malware. Our intent is to provide information that will educate computer users on how to detect, and ultimately remove, malware from their computer with the help of SpyHunter and/or manual removal instructions provided on this article.

This article is provided "as is" and to be used for educational information purposes only. By following any instructions on this article, you agree to be bound by the disclaimer. We make no guarantees that this article will help you completely remove the malware threats on your computer. Spyware changes regularly; therefore, it is difficult to fully clean an infected machine through manual means.

Leave a Reply

Please DO NOT use this comment system for support or billing questions. For SpyHunter technical support requests, please contact our technical support team directly by opening a customer support ticket via your SpyHunter. For billing issues, please refer to our "Billing Questions or Problems?" page. For general inquiries (complaints, legal, press, marketing, copyright), visit our "Inquiries and Feedback" page.


HTML is not allowed.