Home Malware Programs Worms Koobface.C

Koobface.C

Posted: July 20, 2009

Threat Metric

Threat Level: 9/10
Infected PCs: 41
First Seen: July 24, 2009
OS(es) Affected: Windows

Koobface.C (also referred to as W32.Koobface.C) is a computer worm that can infect computer system when you click on a malicious link sent to you by another trojan through Twitter social networking. Koobface.C can infect Windows registry in order to begin running as soon as Windows starts up.

Aliases

probably a variant of Win32/Koobface.NBG [NOD32]Worm:Win32/Koobface.gen!C [Microsoft]Trojan.Win32.Agent.ckpt [Kaspersky]TrojWare.Win32.Trojan.Agent.Gen [Comodo]Worm.Win32.Koobface!IK* [a-squared]PAK_Generic.001 [TrendMicro]Downloader [Symantec]W32/Boface.D.worm [Panda]Net-Worm.Win32.Koobface.bo [Kaspersky]W32/Heuri.BO!worm.im [Fortinet]Worm.Win32.Koobface.bo [Comodo]I-Worm.Koobface.bm [CAT-QuickHeal]Win32.Worm.Koobface.M [BitDefender]SHeur.CNLC [AVG]W32/Backdoor2.DWBW [Authentium]
More aliases (78)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



bolivar25.exe File name: bolivar25.exe
Size: 28.67 KB (28672 bytes)
MD5: f8bd132c941ddc47f78ff2dc5f7dece9
Detection count: 87
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
romeo15.exe File name: romeo15.exe
Size: 23.55 KB (23552 bytes)
MD5: 8c0ec198e2abacf172e1d5f229215070
Detection count: 85
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
bolivar20.exe File name: bolivar20.exe
Size: 26.62 KB (26624 bytes)
MD5: 82c3f036f9256071a30bf9818a569176
Detection count: 46
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
bolivar20.exe File name: bolivar20.exe
Size: 26.62 KB (26624 bytes)
MD5: f0ba39a04903f1aa40bc556db9598385
Detection count: 36
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
Loading...