|
|
Trojan.Abwiz.C Trojan Information
| Name: |
Trojan.Abwiz.C |
| Category: |
Trojan |
| Advice: |
Remove |
| Risk: |
Severe Risk
Severe threats typically are remotely exploitable vulnerabilities, which can lead to system compromise. Successful exploitation does not normally require any interaction and exploits are in the wild. There exists a high possibility of potential system damage or security flaw. Attacker has complete control over your computer or install new software on your machine. |
| Description:
|
Trojan.Abwiz.C is a backdoor Trojan that allows the remote attacker to perform various malicious actions on the compromised computer.
Trojan.Abwiz.C will attempt to contact different IP addresses, including 217.159.201.136 and 217.159.201.135, to receive commands. This trojan also has a built in SMTP engine which is used to send spam from the infected computer.
|
| Signatures:
|
process: symcsvc.exe: MD5 Hash: 8421609db2544b8c461...
process: symcsvc.exe: MD5 Hash: 169779956907a90d002...
process: ~update.exe: MD5 Hash: 169779956907a90d002...
process: ~update.exe: MD5 Hash: 52949f83f04d1117383...
process: symcsvc.exe: MD5 Hash: 52949f83f04d1117383...
process: win32.exe: MD5 Hash: 8610cd1e5f58399901f...
process: latest.exe: MD5 Hash: 8610cd1e5f58399901f...
process: latest.exe: MD5 Hash: 41be2143b119655d97a...
process: latest.exe: MD5 Hash: 9a26689d8c1758f1307...
process: 1.exe: MD5 Hash: f12dd0a09ce5d81f373...
process: ~update.exe: MD5 Hash: 587570d9d45998039b4...
process: latest.exe: MD5 Hash: 134dd47feed7f4aca59...
process: symcsvc.exe: MD5 Hash: 587570d9d45998039b4...
process: latest.exe: MD5 Hash: 7b9614a316d2cbd5307...
process: 3.exe: MD5 Hash: 41e22d0701719ae5227...
process: symcsvc.exe: MD5 Hash: 87d7da43a5b68eb1672...
process: latest.exe: MD5 Hash: d63ebd0f4a59006abfe...
process: init32m.exe: MD5 Hash: 6401262dae990eab27d...
process: ~update.exe: MD5 Hash: f6ab773a45d3a0cf5b1...
process: abc.exe: MD5 Hash: db979380eefb2ff5f94...
process: cssrs.exe: MD5 Hash: 3bf88a3b682dcb6e407...
process: latest.exe: MD5 Hash: 52eff38e3033110d769...
process: web.exe: MD5 Hash: 41fbc26ac5739f73b46...
process: winstall.exe: MD5 Hash: 0ea878a83ee8251d5d9...
process: sender.exe: MD5 Hash: 8fe86e4fea9e82a6dc2...
process: combo.exe: MD5 Hash: f4732fbc9e1a7e5c083...
process: malara.exe: MD5 Hash: a8a1686b6a7f1bbc913...
process: ~update.exe: MD5 Hash: 6b1ec52101b74d5f558...
process: sysvcs.exe: MD5 Hash: 6b1ec52101b74d5f558.. |
| Type: |
Trojan - A Trojan software is any software on a user's computer that the user is not aware or intentionally installed. Most Trojan software is designed to perform some sort of actions that could jeopardize the user's security or privacy. |
Top Trojan Visited Pages:
Tro.Downloader.loadadv - 408 visits
Enable Regedit - 191 visits
Java.ClassLoader.Dummy.d - 182 visits
Trojan.BankerSpy - 176 visits
RBot.steam - 85 visits
Startup.NameShifter.Xgtray - 76 visits
Tro.Bagle.SP - 58 visits
Trojan.BHO.NameShifter.EZ - 54 visits
LRPatch Trojan - 54 visits
Tro.YourStartingPage - 53 visits
Random Trojan Pages:
DivX Updater - Alias: Troj/Muly-A
Trojan.Backdoor.Codbot.AG - Alias: Backdoor:Win32/Codbot.AG
Virus.Chiton.b.dr - Alias: W32/Chiton.1349
Erase 26 Trojan - Alias: QZap154, Trojan.Erase26.d1, Trojan.Erase26.d2, Trojan.Erase26.d3
Trojan.Startup.NameShifter.AH
Troj.Downloader.max - Alias: Trojan-Downloader.Win32.Small.awa, Troj/Dloader-PE
Fight Trojan - Alias: Fight, Trojan.Fight
Inspiration - Alias: TrojanProxy.Win32.Inspir.10
Smurftools
Buschtrommel 1.2
|
|