Home Malware Programs Viruses Net-Worm.Win32.Kolab.drg

Net-Worm.Win32.Kolab.drg

Posted: September 30, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 307
First Seen: December 6, 2010
Last Seen: April 10, 2021
OS(es) Affected: Windows

Net-Worm.Win32.Kolab.drg is a network-aware computer worm that will attempt to replicate across an existing network. Net-Worm.Win32.Kolab.drg also spreads using Windows networking APIs, MAPI functions or email clients such as Microsoft Outlook. Net-Worm.Win32.Kolab.drg creates unknown email messages with corrupt attachments and sometimes attaches itself to outgoing email messages. Net-Worm.Win32.Kolab.drg also uses a misleading message which suggests that the recipient should open the attachment to see something interesting or important. Net-Worm.Win32.Kolab.drg should not be trusted and must be removed from the infected system once detected.

Aliases

Trj/Buzus.AH [Panda]Dropper.Generic2.MVY [AVG]W32/Buzus.EEFF!tr [Fortinet]Trojan/Win32.Buzus [AhnLab-V3]Trojan.MulDrop1.39118 [DrWeb]TrojWare.Win32.VBInject.IK [Comodo]Trojan.Generic.4085173 [BitDefender]Trojan.Win32.Buzus.eeff [Kaspersky]probably a variant of Win32/Inject [NOD32]Generic.dx!szf [McAfee]Generic Trojan [Panda]Dropper.Generic2.WMY [AVG]W32/Refroso.BLC!tr [Fortinet]Trojan.Win32.Buzus [Ikarus]Win-Trojan/Buzus.319560 [AhnLab-V3]
More aliases (77)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%TEMP%\66ze2u2.exe File name: 66ze2u2.exe
Size: 40.96 KB (40960 bytes)
MD5: ac62472d99b2b4d6db6ffd5fa2870764
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%TEMP%\d9x3hdf.exe File name: d9x3hdf.exe
Size: 41.47 KB (41472 bytes)
MD5: 061505ba5e5b5a051614e301463fe301
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%APPDATA%\Windows NT\svchost.exe File name: svchost.exe
Size: 319.56 KB (319560 bytes)
MD5: 2234104713e4c3c1143b9286ce9a8c77
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Windows NT
Group: Malware file
Last Updated: July 7, 2011
Loading...