Uploaded January 2012 | Updated September 2026, 2 weeks ago
Well, HAPPY NEW FUCKING 2012 YEAR!
Now, cutting off to this trojan: It asks you something in German, you can translate if you want to, and if you approve action, it will swap mouse buttons, change theme, open shithappens(dot)com, replace logon wallpaper, but not desktop one (which is generally possible when you just apply any BMP wallpaper and then apply non-BMP wallpaper on your desktop), screws up EXE extension by defining it as "EXESHIT". It can't be changed.
Shit happens. 2012 happened right now.
Aliases from VT:
ALYac Trojan.Win32.Sheath.A 20150301
AVG Generic.IAY 20150301
AVware Trojan.Win32.Generic!BT 20150228
Ad-Aware Trojan.Win32.Sheath.A 20150301
Agnitum Trojan.Sheath!XzXYX4i96gA 20150228
AhnLab-V3 Win-Trojan/Sheath.336384 20150228
Antiy-AVL Trojan/Win32.Delf 20150301
Avira TR/Sheath.A 20150228
Baidu-International Trojan.Win32.Sheath.ApU 20150301
BitDefender Trojan.Win32.Sheath.A 20150301
CMC Generic.Win32.2001fd6149!MD 20150301
Comodo TrojWare.Win32.Sheath.A 20150301
Cyren W32/Trojan.CQQR-1314 20150301
DrWeb Trojan.Sheath 20150301
ESET-NOD32 Win32/Sheath.A 20150228
Emsisoft Trojan.Win32.Sheath.A (B) 20150301
F-Prot W32/Trojan!8b67 20150301
Fortinet W32/Sheath.A!tr 20150301
GData Trojan.Win32.Sheath.A 20150301
Jiangmin Trojan/Sheath 20150228
K7AntiVirus Riskware ( 0040eff71 ) 20150301
K7GW Riskware ( 0040eff71 ) 20150301
Kaspersky Trojan.Win32.Sheath 20150301
McAfee Sheath 20150301
McAfee-GW-Edition Sheath 20150301
MicroWorld-eScan Trojan.Win32.Sheath.A 20150301
Microsoft Trojan:Win32/Sheath 20150301
NANO-Antivirus Trojan.Win32.Sheath.fxpg 20150301
Norman Sheath 20150301
Qihoo-360 Win32/Trojan.9fa 20150301
Rising PE:Trojan.Win32.Generic.122D3F58!304955224 20150228
Sophos Troj/Happen-A 20150301
Symantec Trojan Horse 20150301
Tencent Win32.Trojan.Sheath.Hlxh 20150301
TheHacker Trojan/Hami 20150227
TrendMicro TROJ_SHEATH.A 20150301
TrendMicro-HouseCall TROJ_SHEATH.A 20150301
VBA32 Trojan.Sheath 20150227
VIPRE Trojan.Win32.Generic!BT 20150301
ViRobot Trojan.Win32.A.Sheath.336384[h] 20150301
Zillya Trojan.Sheath.Win32.1 20150228
Well, HAPPY NEW FUCKING 2012 YEAR!
Now, cutting off to this trojan: It asks you something in German, you can translate if you want to, and if you approve action, it will swap mouse buttons, change theme, open shithappens(dot)com, replace logon wallpaper, but not desktop one (which is generally possible when you just apply any BMP wallpaper and then apply non-BMP wallpaper on your desktop), screws up EXE extension by defining it as "EXESHIT". It can't be changed.
Shit happens. 2012 happened right now.
Aliases from VT:
ALYac Trojan.Win32.Sheath.A 20150301
AVG Generic.IAY 20150301
AVware Trojan.Win32.Generic!BT 20150228
Ad-Aware Trojan.Win32.Sheath.A 20150301
Agnitum Trojan.Sheath!XzXYX4i96gA 20150228
AhnLab-V3 Win-Trojan/Sheath.336384 20150228
Antiy-AVL Trojan/Win32.Delf 20150301
Avira TR/Sheath.A 20150228
Baidu-International Trojan.Win32.Sheath.ApU 20150301
BitDefender Trojan.Win32.Sheath.A 20150301
CMC Generic.Win32.2001fd6149!MD 20150301
Comodo TrojWare.Win32.Sheath.A 20150301
Cyren W32/Trojan.CQQR-1314 20150301
DrWeb Trojan.Sheath 20150301
ESET-NOD32 Win32/Sheath.A 20150228
Emsisoft Trojan.Win32.Sheath.A (B) 20150301
F-Prot W32/Trojan!8b67 20150301
Fortinet W32/Sheath.A!tr 20150301
GData Trojan.Win32.Sheath.A 20150301
Jiangmin Trojan/Sheath 20150228
K7AntiVirus Riskware ( 0040eff71 ) 20150301
K7GW Riskware ( 0040eff71 ) 20150301
Kaspersky Trojan.Win32.Sheath 20150301
McAfee Sheath 20150301
McAfee-GW-Edition Sheath 20150301
MicroWorld-eScan Trojan.Win32.Sheath.A 20150301
Microsoft Trojan:Win32/Sheath 20150301
NANO-Antivirus Trojan.Win32.Sheath.fxpg 20150301
Norman Sheath 20150301
Qihoo-360 Win32/Trojan.9fa 20150301
Rising PE:Trojan.Win32.Generic.122D3F58!304955224 20150228
Sophos Troj/Happen-A 20150301
Symantec Trojan Horse 20150301
Tencent Win32.Trojan.Sheath.Hlxh 20150301
TheHacker Trojan/Hami 20150227
TrendMicro TROJ_SHEATH.A 20150301
TrendMicro-HouseCall TROJ_SHEATH.A 20150301
VBA32 Trojan.Sheath 20150227
VIPRE Trojan.Win32.Generic!BT 20150301
ViRobot Trojan.Win32.A.Sheath.336384[h] 20150301
Zillya Trojan.Sheath.Win32.1 20150228










