|
|
RBot.servenxp Worm Information
| Name: |
RBot.servenxp |
| Category: |
Worm |
| Alias: |
- Alias: Dmsetup.worm, HLLO.Dmsetup.I, IRC-Worm.DmSetup.i |
| Advice: |
Remove |
| Risk: |
Severe Risk
Severe threats typically are remotely exploitable vulnerabilities, which can lead to system compromise. Successful exploitation does not normally require any interaction and exploits are in the wild. There exists a high possibility of potential system damage or security flaw. Attacker has complete control over your computer or install new software on your machine. |
| Description:
|
RBot is a Trojan worm that spreads through network shares and provides various backdoor capabilities to the attacker.
|
| Signatures:
|
process: servenxp.exe: MD5 Hash: d39e00d28e29b57480d...
process: servenxp.exe: MD5 Hash: 95aac8c09849e7bb9c9.. |
| Type: |
Worm - A worm is program that propagates by attacking other computers and copying itself to them. Worms may replace files, but do not insert themselves into files (as viruses do). |
Top Worm Visited Pages:
Wukill.mstray - Alias: Win32/HLLW.Wukill - 288 visits
Rbot - Alias: Backdoor.Rbot.Gen - 275 visits
SDBot - Alias: Wootbot.gen, Wootbot, Donk, spybot, Agobot - 228 visits
Trojan.Downloader.winstall - 181 visits
Worm.Brit.e - Alias: VBS/Chick.e@M virus - 89 visits
Worm.P2P.SpyBot.gen - 56 visits
Gaobot - 43 visits
Win32/Darby.O - 42 visits
Worm.Trilissa.e - 42 visits
JS.Lame - Alias: HTML.Lame - 40 visits
Random Worm Pages:
Win/Lizard.1967 - Alias: W95/Lizard
RatO 2.0 - Alias: VBS/Tobar
Virus.Klez.H - Alias: I-Worm.Klez.h
HTML.Lanus.c
Worm.PrettyPark.wwpack - Alias: PrettyPark.51433, W32/Pretty
VBS.Hard
My Picture BMP worm
Phage.DoS.worm
Worm.Skudex
MIRC.MircBug.i - Alias: Dmsetup.worm, HLLO.Dmsetup.I, IRC-Worm.DmSetup.i
|
|