Home Malware Programs Worms Phorpiex.B

Phorpiex.B

Posted: August 16, 2011

Threat Metric

Threat Level: 5/10
Infected PCs: 1,262
First Seen: August 16, 2011
Last Seen: November 4, 2022
OS(es) Affected: Windows

Aliases

Inject.NDR [AVG]W32/Agent.WTA!tr [Fortinet]Trojan-Dropper [Ikarus]Downloader-FLQ!038CCAC1DF23 [McAfee-GW-Edition]TR/Injector.300368 [AntiVir]Win32:Inject-AXX [Trj] [Avast]Trojan.Fakeavlock [Symantec]Downloader-FLQ [McAfee]Trojan/Win32.FakeAv.gen [Antiy-AVL]Trojan.Win32.Inject.csit [Kaspersky]Win32.TRCrypt.XPACK [eSafe]Worm.Dorkbot.A [CAT-QuickHeal]Dropper.Generic8.QNK [AVG]BackDoor-FAQI!72ECA05C3D4E [McAfee-GW-Edition]TR/RogueericKD.931340 [AntiVir]
More aliases (596)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%USERPROFILE%\8989898889898889\winsvo.exe File name: winsvo.exe
Size: 104.52 KB (104528 bytes)
MD5: 052ee54d0f080e7e0f9cff86f06e7f81
Detection count: 157
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\8989898889898889
Group: Malware file
Last Updated: January 31, 2013
%USERPROFILE%\75439967573920484\winsvr.exe File name: winsvr.exe
Size: 208.89 KB (208896 bytes)
MD5: 9605509c7bc781a89600f7fccc82ea19
Detection count: 136
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\75439967573920484
Group: Malware file
Last Updated: January 28, 2013
%USERPROFILE%\M-100-1929-5830-4592\winmgr.exe File name: winmgr.exe
Size: 300.36 KB (300368 bytes)
MD5: 038ccac1df233bc48cfb1d7205bdced6
Detection count: 68
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\M-100-1929-5830-4592
Group: Malware file
Last Updated: May 13, 2013
%TEMP%\9334911124.exe File name: 9334911124.exe
Size: 208.89 KB (208896 bytes)
MD5: 015475207d5f3954b4a964ae05030afb
Detection count: 60
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: February 14, 2013
%USERPROFILE%\68956435567898775\winsvc.exe File name: winsvc.exe
Size: 115.2 KB (115200 bytes)
MD5: 8d3eedd1a7005e1c2c59ac86f6e7977b
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\68956435567898775
Group: Malware file
Last Updated: January 29, 2013
C:\Users\<username>\P-7-78-8964-9648-3874\wincrs.exe File name: wincrs.exe
Size: 139.26 KB (139264 bytes)
MD5: 8affbe4aea375937ebaec452165c938f
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\P-7-78-8964-9648-3874\wincrs.exe
Group: Malware file
Last Updated: August 5, 2021
%TEMP%\csrss.exe File name: csrss.exe
Size: 210.94 KB (210944 bytes)
MD5: 1815f518aa0f3dd3e666bf7734af5872
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: August 22, 2011
%USERPROFILE%\M-1-52-5782-8754-5245\winstu.exe File name: winstu.exe
Size: 33.28 KB (33280 bytes)
MD5: 2431951097c37533065ddd87323ec192
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\M-1-52-5782-8754-5245
Group: Malware file
Last Updated: January 21, 2013
%TEMP%\2828699719.exe File name: 2828699719.exe
Size: 123.39 KB (123392 bytes)
MD5: b19f4261eb8ac80b3fa30545da134ef8
Detection count: 0
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: January 31, 2013

More files
Loading...