|
|
Worm.P2P.SpyBot.gen Worm Information
| Name: |
Worm.P2P.SpyBot.gen |
| Category: |
Worm |
| Alias: |
- Alias: W32/Frethem |
| Advice: |
Remove |
| Risk: |
Elevated Risk
Elevated threats are usually threats that fall into the range of adware in which data about a user's habits are tracked and sent back to a server for analysis without your consent or knowledge. |
| Description:
|
|
| Signatures:
|
process: spybot.exe: MD5 Hash: 2b4ed0b6ae600a5485c...
process: win.exe: MD5 Hash: 2a1ad5bb921d59d5537...
process: ctfs.exe: MD5 Hash: 7553a4544b0a4798619...
process: afrlywd.exe: MD5 Hash: d04dea1effe5c1340b3...
process: 386.exe: MD5 Hash: dba0ffe1115eef9d27e...
process: zonealarmupdate.exe: MD5 Hash: cc48b12e61e27f67443...
process: dgffjpdmo.exe: MD5 Hash: 8a034dcfc4a5bca1720...
process: fqsdp.exe: MD5 Hash: b0bc3531ff59868657d...
process: sysdebug.exe: MD5 Hash: cbce1436d2795a3980c...
process: win32usb.exe: MD5 Hash: 9863834360409913ccb...
process: ewvissb.exe: MD5 Hash: 2c9f9ca4c893d2005a6...
process: wvabdy.exe: MD5 Hash: 76f6b059e1f769ccd1a...
process: win32upd.exe: MD5 Hash: bfe88af511af897c014...
process: securitychk.exe: MD5 Hash: f0712dd1be50b4b04f2...
process: winlogonpc.exe: MD5 Hash: facec44e61f248cd65b...
process: winlogonpc.exe: MD5 Hash: 26210a48b8aec462c4d...
process: updates.exe: MD5 Hash: b459c739bdb83f6ce89...
process: winlogonpc.exe: MD5 Hash: 12213fd5f9461ec6a0e...
process: winlogonpc.exe: MD5 Hash: fea2a6506391145f83b...
process: winlogonpc.exe: MD5 Hash: 2c73b589336af63ef25...
process: adaware.exe: MD5 Hash: 247be51c0afe4b71aaa...
process: winlogin.exe: MD5 Hash: 4deabaacf7d0b82fb47...
process: svchosts.exe: MD5 Hash: 604b64d795c6f98476c...
process: svchosts.exe: MD5 Hash: aeebc5056522dbe5b95...
process: winlogonpc.exe: MD5 Hash: b50bab4afbd76d180ef...
process: winlogonpc.exe: MD5 Hash: 27fed8c2057bb3c7b30...
process: cfgpwnz.exe: MD5 Hash: 09b055a872ba05fd4c5...
process: ciclient.exe: MD5 Hash: b220e0d3975c100b82b...
process: mmtask2.exe: MD5 Hash: 1ba7b54a6873b8dc784...
process: winis.exe: MD5 Hash: 88450528eab54a2ad22...
process: wuaumqr.exe: MD5 Hash: 410ca36a2b97214e29a...
process: bsharelite.exe: MD5 Hash: ce4b9d369b51be7ceba...
process: csmss.exe: MD5 Hash: 93776ce2d3ad361d8ae...
process: upmesv.exe: MD5 Hash: 1df311f3b5360973275...
process: msginav.exe: MD5 Hash: d4e11e7784d73bab4f4...
process: svehost.exe: MD5 Hash: b5234ea993ace62ffb0...
process: msnmglog.exe: MD5 Hash: 9f8b8ed967894d24391...
process: file.exe: MD5 Hash: 3f6c8cb29417f532bdb...
process: winnt update.exe: MD5 Hash: dba39e4e6f255576e4e...
process: winsvc.exe: MD5 Hash: 6b5c5de76cedd4f72c0...
process: cisvcc.exe: MD5 Hash: 9e4a2411381c9d2e45b...
process: tskmangr.exe: MD5 Hash: 6d1f1bf5dbeab7f5b7e...
process: svchosta.exe: MD5 Hash: 91be55e09f2d9d9aa27...
process: kazaalite.exe: MD5 Hash: 5205d683f8eda61f2a0...
process: sinstantm.exe: MD5 Hash: 98ea3f85e937f2cb91c...
process: bsplayer.exe: MD5 Hash: 183013a4ac34f857948...
process: svchosta.exe: MD5 Hash: 42efb7a7cf066ea0d3d...
process: msnmsngr.exe: MD5 Hash: a1395349d19c3c00d4c...
process: rundll.exe: MD5 Hash: 9b8c8cfa3e6641c3824...
process: kazaalite.exe: MD5 Hash: 4aa099a319191f99c42...
process: musicmatch32.exe: MD5 Hash: 3604b93dd6254892572...
process: winstall.exe: MD5 Hash: a88162e717e22e9a18d...
process: mmtask4.exe: MD5 Hash: 6ff839cc1785dddf577...
process: ms32drive.exe: MD5 Hash: fcc239a04af6f0484dd...
process: svchosta.exe: MD5 Hash: 0d2b32723052048c7b8...
process: antivirus.exe: MD5 Hash: d3488d1a6b98460c9d6...
process: winsock2.exe: MD5 Hash: 6b184b03863cd65a002...
process: musicmatch32.exe: MD5 Hash: 29552ad51eeec07fa62...
process: aolclient.exe: MD5 Hash: 74c3e1212389c35df82...
process: svdhost.exe: MD5 Hash: b5d25fb343e8c2108aa...
process: winpreload.exe: MD5 Hash: ae5d594bff5a9382bd1...
process: calc32.exe: MD5 Hash: 2dd82cbabe285c7b954...
process: servicem.exe: MD5 Hash: 87b93f27195b664b7f6.. |
| Type: |
Worm - A worm is program that propagates by attacking other computers and copying itself to them. Worms may replace files, but do not insert themselves into files (as viruses do). |
Top Worm Visited Pages:
Wukill.mstray - Alias: Win32/HLLW.Wukill - 281 visits
Rbot - Alias: Backdoor.Rbot.Gen - 271 visits
SDBot - Alias: Wootbot.gen, Wootbot, Donk, spybot, Agobot - 223 visits
Trojan.Downloader.winstall - 176 visits
Worm.Brit.e - Alias: VBS/Chick.e@M virus - 86 visits
Worm.P2P.SpyBot.gen - 54 visits
Gaobot - 42 visits
Worm.Trilissa.e - 41 visits
Win32/Darby.O - 40 visits
JS.Lame - Alias: HTML.Lame - 39 visits
Random Worm Pages:
Worm.Migrate
Virus.Sachiel.worm.c - Alias: I-Worm/Sachiel, W32.Sachiel, W32/Alchies, W32/Sachiel.gen.worm,
Worm.Sonic.b - Alias: W32/Sonic@MM
IRC.Worm.Nonu - Alias: IRC/Hchik.gen
Rbot.P3 - Alias: Backdoor:Win32/Rbot
IRC.Worm.Spyboy
Rbot.Win32 - Alias: W32/Rbot-VI
Worm.mypics.c - Alias: W32/HLLW.Video.25600, W32/Mypics
Worm.Avoner - Alias: SuperNova, W32/Bihup.worm
Worm.Frethem.I - Alias: W32/Frethem
|
|