Home Malware Programs Worms Slenfbot.ADS

Slenfbot.ADS

Posted: February 4, 2011

Threat Metric

Threat Level: 5/10
Infected PCs: 28
First Seen: February 4, 2011
OS(es) Affected: Windows

Aliases

Dropper.Generic3.LQR [AVG]W32/Refroso.AGEA!tr [Fortinet]Trojan-Dropper [Ikarus]Malware/Win32.Generic [AhnLab-V3]Heuristic.BehavesLike.Win32.Downloader.A [McAfee-GW-Edition]TR/Dropper.Gen [AntiVir]Trojan.FakeAV.3545 [DrWeb]Trojan.Generic.KDV.125481 [BitDefender]Win32/Adware.SpywareProtect2009 [NOD32]PSW.Generic8.AUVB [AVG]W32/SpyEyes.ERC!tr [Fortinet]Trojan-Spy.Win32.SpyEyes [Ikarus]Spyware/Win32.SpyEyes [AhnLab-V3]Sus/UnkPack-C [Sophos]TR/Spy.SpyEyes.erc [AntiVir]
More aliases (80)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\Anwendungsdaten\xdYEelKvGnI.exe File name: xdYEelKvGnI.exe
Size: 378.88 KB (378880 bytes)
MD5: c7e993e75193d5d289e030712efa394c
Detection count: 22
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Anwendungsdaten
Group: Malware file
Last Updated: February 7, 2011
%WINDIR%\system32\mspnp204f.exe File name: mspnp204f.exe
Size: 153.6 KB (153600 bytes)
MD5: e5a7fcce2f5e854755e3a67329c96894
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: February 7, 2011
%TEMP%\xhkbnhwgv\mfoxhgksjmo.exe File name: mfoxhgksjmo.exe
Size: 305.92 KB (305920 bytes)
MD5: f0b8e33a16ede1d464f93d2e70fa403c
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\xhkbnhwgv
Group: Malware file
Last Updated: February 8, 2011
%WINDIR%\system32\symlasvc.exe File name: symlasvc.exe
Size: 39.93 KB (39936 bytes)
MD5: 384b88e1e64014e20679032c3dd53d68
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: February 4, 2011
Loading...