Home Malware Programs Worms Pushbot

Pushbot

Posted: October 19, 2010

Threat Metric

Threat Level: 9/10
Infected PCs: 749
First Seen: July 24, 2009
Last Seen: August 27, 2022
OS(es) Affected: Windows

Pushbot worms come from a malware family that spreads using MSN Messenger. Pushbot variants also contain an IRC-based backdoor via which they receive instructions to download and execute corrupt files, send messages to MSN Messenger contacts, and retrieve information from protected storage. Pushbot worms pose a significant threat to PC security and should be removed as soon as they are detected.

Aliases

Inject.DBT [AVG]TR/Agent.196608.4 [AntiVir]BackDoor.Comet.152 [DrWeb]Win32.Trojan [eSafe]W32/Checkout!bi [McAfee]Worm/Pushbot.A.205 [AntiVir]RDN/Generic Dropper!ii [McAfee]Worm.Gamarue.B [CAT-QuickHeal]Trj/OCJ.D [Panda]SHeur4.BGGT [AVG]W32/Agent.HJNE!tr [Fortinet]Trojan-Dropper.Win32.Agent [Ikarus]PWS-FAVD!5F465959BE6B [McAfee-GW-Edition]Worm/Pushbot.A.207 [AntiVir]Trojan.Packed.24187 [DrWeb]
More aliases (816)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\csdrive32.exe File name: csdrive32.exe
Size: 51.2 KB (51200 bytes)
MD5: 2cdddf024e647be0cdac7cd106bb0dc0
Detection count: 136
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: August 8, 2012
%APPDATA%\10.exe File name: 10.exe
Size: 200.7 KB (200704 bytes)
MD5: d1cc03c551644845e2904974b17b6b02
Detection count: 85
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: November 11, 2011
%WINDIR%\nvsvc32.exe File name: nvsvc32.exe
Size: 86.01 KB (86016 bytes)
MD5: 20d6b2514ffe727ced75eb03e188f77e
Detection count: 70
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: April 8, 2013
C:\Users\<username>\AppData\Roaming\35F0.tmp File name: 35F0.tmp
Size: 48.64 KB (48640 bytes)
MD5: 8cd9856e736a8526b97e6f471cb93c4d
Detection count: 42
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Roaming\35F0.tmp
Group: Malware file
Last Updated: August 27, 2022
%WINDIR%\csdrive32.exe File name: csdrive32.exe
Size: 48.64 KB (48640 bytes)
MD5: 0058e903630a7cd34c77ae3c758b114c
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: September 7, 2012
%APPDATA%\4D.exe File name: 4D.exe
Size: 90.11 KB (90112 bytes)
MD5: 0b22ed62c0b8e0d34e4e21006c662a76
Detection count: 34
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: November 15, 2012
C:\Users\<username>\AppData\Roaming\27C8.tmp File name: 27C8.tmp
Size: 53.76 KB (53760 bytes)
MD5: 4e824d6926163f7163e2f2a25b0c7f69
Detection count: 19
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Roaming\27C8.tmp
Group: Malware file
Last Updated: August 27, 2022
C:\Users\<username>\AppData\Roaming\172A.tmp File name: 172A.tmp
Size: 46.08 KB (46080 bytes)
MD5: c4580e02273f478c145a970755b1f7ea
Detection count: 16
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Roaming\172A.tmp
Group: Malware file
Last Updated: August 27, 2022
%WINDIR%\ywdrive32.exe File name: ywdrive32.exe
Size: 100.35 KB (100352 bytes)
MD5: 742151ad4c217f3d5640d31eb8f14a6a
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: January 21, 2013
%WINDIR%\safari.exe File name: safari.exe
Size: 320 KB (320000 bytes)
MD5: 0d2ece7d0dd44f322e0bca831fb89cf8
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: April 2, 2013
%WINDIR%\jodrive32.exe File name: jodrive32.exe
Size: 81.92 KB (81920 bytes)
MD5: 4776d2f0539eb60d3cffc612922805dd
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: July 15, 2022
%WINDIR%\aadrive32.exe File name: aadrive32.exe
Size: 47.1 KB (47104 bytes)
MD5: 81e73daae9744e72a9d8182f98240b20
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: February 1, 2012
%APPDATA%\6.exe File name: 6.exe
Size: 55.8 KB (55808 bytes)
MD5: 6004bf5a76eb22d40e92a8f278543213
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: April 17, 2013
C:\Users\<username>\AppData\Roaming\148F.tmp File name: 148F.tmp
Size: 46.59 KB (46592 bytes)
MD5: d7f61d61d08c277373480eb6a769c224
Detection count: 12
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Roaming\148F.tmp
Group: Malware file
Last Updated: August 27, 2022
%WINDIR%\system32\tasksvc.exe File name: tasksvc.exe
Size: 144.91 KB (144913 bytes)
MD5: b4f7542d4f78dae931d1fa8daecd625e
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: October 28, 2011
C:\Users\<username>\AppData\Roaming\EB7B.tmp File name: EB7B.tmp
Size: 53.76 KB (53760 bytes)
MD5: 6a69265924ae440b0cea5a54fc0762ce
Detection count: 9
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Roaming\EB7B.tmp
Group: Malware file
Last Updated: August 27, 2022
C:\Users\<username>\AppData\Roaming\14E7.tmp File name: 14E7.tmp
Size: 45.56 KB (45568 bytes)
MD5: 9ba537179d59da0902795a338645475d
Detection count: 7
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Roaming\14E7.tmp
Group: Malware file
Last Updated: August 27, 2022
%PUBLIC%\mdm.exe File name: mdm.exe
Size: 160.33 KB (160333 bytes)
MD5: 001ffd3acd701db4337cb7c2ed4ab2a6
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: February 20, 2012
%WINDIR%\yadrive32.exe File name: yadrive32.exe
Size: 48.64 KB (48640 bytes)
MD5: 37b261855da8001beafb6836ee3fb0ab
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: August 8, 2012
%APPDATA%\3F95.exe File name: 3F95.exe
Size: 75.77 KB (75776 bytes)
MD5: ed27ae6ea4fb3dfbaa9781cd475996f6
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: January 28, 2013
C:\Users\<username>\AppData\Roaming\410C.tmp File name: 410C.tmp
Size: 48.12 KB (48128 bytes)
MD5: 95013fe093be274011ba42f9114b1871
Detection count: 5
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Roaming\410C.tmp
Group: Malware file
Last Updated: August 27, 2022
C:\Users\<username>\AppData\Roaming\6695.tmp File name: 6695.tmp
Size: 45.56 KB (45568 bytes)
MD5: e8c4a5ee7c7ecdabd9cee6b10a1c3c42
Detection count: 5
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Roaming\6695.tmp
Group: Malware file
Last Updated: August 27, 2022
%APPDATA%\31.exe File name: 31.exe
Size: 46.59 KB (46592 bytes)
MD5: 559d0888b767ef3a24c4478869a6d85c
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: January 11, 2012

More files

Related Posts

Loading...