Main Menu
Home
Bookmark
Contact Us



 
Rbot.StarHider Worm Information

Name: Rbot.StarHider
Category: Worm
Alias: - Alias: I-Worm.Hermes.a, W32/Hermes
Advice: Remove
Risk: Severe Risk Severe threats typically are remotely exploitable vulnerabilities, which can lead to system compromise. Successful exploitation does not normally require any interaction and exploits are in the wild. There exists a high possibility of potential system damage or security flaw. Attacker has complete control over your computer or install new software on your machine.
Description: Rbot is the name of a family of remote access tools, also known as backdoors or worms, used by hackers to control a machine without the owner's knowledge.

This group of threats can spread through security exploits, networks, IRC (Internet Relay Chat) servers and sometimes with other malware. Once installed, RBOT will set itself to run on Windows startup, using names that seem to be Windows Related. RBOT allows the attacker to take control of a machine remotely and execute commands. The machine can be used as a spam relay or to participate in a denial of service (DOS) attack.RBOT can spread through networkked computers.

Some RBOT variants can steal passwords and other data from the infected machine, lower security settings and turn off antivirus programs. RBOT variants are also known to steal game and application license keys.

Signatures: process: mfcps.exe: MD5 Hash: bcc7f810d2a9332cd22... process: wvss.exe: MD5 Hash: 758b931bf0b3bff9a3c... process: infoimg.exe: MD5 Hash: 789f96843df53d30ab2... process: wvss.exe: MD5 Hash: 1e1262263851d80ea40... process: avlog.exe: MD5 Hash: edcfbcc1faf238213c0... process: random.exe: MD5 Hash: 5a0452d2fe2042731b0... process: srvabr.exe: MD5 Hash: 6c19147252ac5ee70f0... process: wrauclt.exe: MD5 Hash: 8b848d759e73cb1ab3a... process: dbmc.exe: MD5 Hash: 1f2d4a41a1a623e6e40... process: wvss.exe: MD5 Hash: 27f693263b4d132ed43... process: wuraclt.exe: MD5 Hash: edafdcc502fb8c578d2... process: wvss.exe: MD5 Hash: 8203e4f24427b343933... process: wvss.exe: MD5 Hash: b48d0b70011746f87ee... process: wruaclt.exe: MD5 Hash: 3d45f9656abaa277a66..
Type: Worm - A worm is program that propagates by attacking other computers and copying itself to them. Worms may replace files, but do not insert themselves into files (as viruses do).



Top Worm Visited Pages:
Wukill.mstray - Alias: Win32/HLLW.Wukill - 294 visits
Rbot - Alias: Backdoor.Rbot.Gen - 276 visits
SDBot - Alias: Wootbot.gen, Wootbot, Donk, spybot, Agobot - 229 visits
Trojan.Downloader.winstall - 182 visits
Worm.Brit.e - Alias: VBS/Chick.e@M virus - 89 visits
Worm.P2P.SpyBot.gen - 56 visits
Gaobot - 44 visits
Win32/Darby.O - 42 visits
Worm.Trilissa.e - 42 visits
JS.Lame - Alias: HTML.Lame - 40 visits

Random Worm Pages:
MIRC.Worm.Planet
W0de Durdyn Aleanrahel worm - Alias: I-Worm.ssiwg.g, WDA2
Worm.Brit.f - Alias: VBS/Chick.g@M
Virus.Bugbear.b@MM
Uncensored Worm - Alias: I-Worm.Desor
Win32.HLLO.Bubica
Worm.Talorm
VBS.KidArcade
IRC.Worm.Fylex
Worm.Hermes - Alias: I-Worm.Hermes.a, W32/Hermes


 


© 2006-2008 spyware32.com - Privacy Policy