Home Malware Programs Worms Warezov

Warezov

Posted: May 20, 2009

Threat Metric

Threat Level: 9/10
Infected PCs: 56
First Seen: July 24, 2009
Last Seen: December 11, 2018
OS(es) Affected: Windows

Warezov is a family of worms that infect computers through spam. Emails carrying Warezov are usually styled like an undelivered message or software update, with Warezov attached. After Warezov sneaks into your system, it spams your contacts with a similar message, and attempts to download updated versions of itself from sites. The worm may also block your access to some sites by changing your computer’s HOSTS file, and stop your security software by killing their related processes.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



kbducomp.exe File name: kbducomp.exe
Size: 53.24 KB (53248 bytes)
MD5: 2e74d460dbc4576c8b9185ecfae70b7a
Detection count: 90
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
iissmsst.dll File name: iissmsst.dll
Size: 32.76 KB (32768 bytes)
MD5: dfe1e7f259ae074460230bdf5737a26c
Detection count: 45
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
winninke.dll File name: winninke.dll
Size: 28.67 KB (28672 bytes)
MD5: ee30db13ddd7acb08ffba681718cf12a
Detection count: 36
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
rpcndpnl.dll File name: rpcndpnl.dll
Size: 118.78 KB (118784 bytes)
MD5: 045bbcc8bee9b1dfe99c107e43982033
Detection count: 34
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
wmpudbms.exe File name: wmpudbms.exe
Size: 14.24 KB (14248 bytes)
MD5: 28bca251cbfa8b55639052a75185acff
Detection count: 11
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
sti_msji.dll File name: sti_msji.dll
Size: 69.63 KB (69632 bytes)
MD5: d84d5f8b774d5f5076fe2d4cb2b3e2f3
Detection count: 2
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
asfencob.dll File name: asfencob.dll
Size: 69.63 KB (69632 bytes)
MD5: 6ae52fdba921ba94dfa99228e597b2ca
Detection count: 0
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%WINDIR%\tserv.exe

Related Posts

Loading...