Home Malware Programs Viruses Koobface.gen!F

Koobface.gen!F

Posted: December 1, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 871
First Seen: December 1, 2010
OS(es) Affected: Windows

Aliases

a variant of Win32/Tinxy.BQ [NOD32]Rootkit.Win32.Koobface.co [Kaspersky]Cryptic.HR [AVG]Troj/Agent-MNW [Sophos]probably a variant of Win32/Tinxy.AU [NOD32]W32/Koobface.worm.gen.z2 [McAfee]Rootkit.Win32.Koobface.ba [Kaspersky]W32/Agent.MNW!tr [Fortinet]Win32:Tinxy-B [Avast]Riskware.WinNT.Koobface!IK [a-squared]Suspicious file [Panda]BackDoor.Generic12.CGSD [AVG]W32/Koobface.EJ!tr.rkit [Fortinet]Rootkit.Win32.Koobface [Ikarus]Trojan/Win32.Koobface.gen [Antiy-AVL]
More aliases (38)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\drivers\suf.sys File name: suf.sys
Size: 30.72 KB (30720 bytes)
MD5: c563bf92013b3b583ca8e8d8f16aaba3
Detection count: 415
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\system32\drivers
Group: Malware file
Last Updated: December 1, 2010
%WINDIR%\system32\drivers\tgi.sys File name: tgi.sys
Size: 30.46 KB (30464 bytes)
MD5: 56bef195b19af7e97b75030ce7cfc8f1
Detection count: 365
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\system32\drivers
Group: Malware file
Last Updated: December 1, 2010
%WINDIR%\system32\drivers\hlemunt.sys File name: hlemunt.sys
Size: 44.54 KB (44544 bytes)
MD5: 6d3bf5f1ade223001972dbdc6c336eb6
Detection count: 61
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\system32\drivers
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\drivers\klifoko.sys File name: klifoko.sys
Size: 36.86 KB (36864 bytes)
MD5: e711b416386dc7d1a718559671cd4a24
Detection count: 30
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\system32\drivers
Group: Malware file
Last Updated: December 7, 2010
Loading...