Home Malware Programs Trojans MonitoringTool:Win32/Powerspy.F

MonitoringTool:Win32/Powerspy.F

Posted: December 22, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 28
First Seen: December 22, 2011
OS(es) Affected: Windows

MonitoringTool:Win32/Powerspy.F is a malicious program that can penetrate into targeted PCs and steal information from victims, needed to profit attackers or used to distribute spyware. MonitoringTool:Win32/Powerspy.F has been created by attackers to disguise processes, steal information latently, and even create secret penetration channels on the compromsied PC. MonitoringTool:Win32/Powerspy.F might spread via bundled downloads, fake vide codecs, and other loopholes found in your Windows system. MonitoringTool:Win32/Powerspy.F can reduce PC performance speeds, delete administrative privileges, and cause other serious troubles. Some of the processes of MonitoringTool:Win32/Powerspy.F operate as rootkits and makes this particular spyware difficult to detect and remove. MonitoringTool:Win32/Powerspy.F can access and gather your personal information. Get rid of MonitoringTool:Win32/Powerspy.F in order to keep your PC safe and clean.

Aliases

BackDoor.Generic14.CBLO [AVG]Trojan/Win32.TDSS.gen [Antiy-AVL]Trojan.Generic.7022128 [BitDefender]Win32:Alureon-AOT [Rtk] [Avast]Artemis!2BBD6FD21939 [McAfee]Hider.OOW [AVG]Trojan-Dropper.Win32.Sirefef [Ikarus]Dropper/Win32.Tdss [AhnLab-V3]TR/Rootkit.Gen2 [AntiVir]Mal/EncPk-AAL [Sophos]Trojan.Generic.KDV.481640 [BitDefender]W32/FakeAlert.RL.gen!Eldorado [F-Prot]a variant of Win32/Olmarik.AWT [NOD32]Suspicious file [Panda]Hider.OOS [AVG]
More aliases (48)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 184.32 KB (184320 bytes)
MD5: d924d5ef34a6c051b57c15c19a833705
Detection count: 14
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 23, 2011
%WINDIR%\System32\drivers\smb.sys File name: smb.sys
Size: 66.56 KB (66560 bytes)
MD5: 719f5ce4a8e6659e016309d618954b1c
Detection count: 7
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 23, 2011
%WINDIR%\System32\drivers\dfsc.sys File name: dfsc.sys
Size: 78.33 KB (78336 bytes)
MD5: 2bbd6fd21939e4f6b5de10b8e3e83062
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 23, 2011
%WINDIR%\system32\wnaspid.exe File name: wnaspid.exe
Size: 24.57 KB (24576 bytes)
MD5: f63d1895b0f98f2f62e5802e1ad54465
Detection count: 0
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 22, 2011
Loading...