Home Malware Programs Trojans Spammer.EmailBomb.G

Spammer.EmailBomb.G

Posted: December 8, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 37
First Seen: December 8, 2010
OS(es) Affected: Windows

Spammer.EmailBomb.G is a Trojan, which is distributed by attackers through malicious spam email attachments. Spammer.EmailBomb.G spreads via hotmail.com, and this is done so that attackers working via remote servers could connect and control the compromised PC system. Spammer.EmailBomb.G targets Windows PCs. Spammer.EmailBomb.G can use your personal email accounts for distribution of other malware threats as well as delete administrative privileges, paralyzing computer functionality to help attackers steal personal information. Spammer.EmailBomb.G can record personal data, use email services, and open up connection channels to the internet. Spammer.EmailBomb.G can also create, delete, and corrupt processes, alter runtime policies, delete processes from temporary folders, reconfigure Windows Security Center and Firewall settings, so that Spammer.EmailBomb.G won't be detected or removed. Spammer.EmailBomb.G can also add operations to scheduled tasks list, disable safe mode, issue fake security alerts, distracting attention from the real Spammer.EmailBomb.G infection, reconfigure USB drives to download malicious files via removable devices, or even change its own structure, to disguise itslef from detection and deletion.

Aliases

Suspicious file [Panda]Heur.Packed.Unknown [Comodo]Mal/Generic-L [Sophos]PAK_Generic.001 [TrendMicro]Suspicious.Cloud [Symantec]Trojan.Win32.Generic!BT [Sunbelt]Sus/Spy-B [Sophos]Spammer:Win32/EmailBomb.G [Microsoft]STPAGE.Trojan [DrWeb]Gen:Trojan.Heur.GZ.hmGfbWrYv@j [BitDefender]Generic17.BTKZ [AVG]TR/Spy.Gen [AntiVir]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\config\svchost.exe File name: svchost.exe
Size: 83.32 KB (83324 bytes)
MD5: b1ae35fc3cadb38569bc8f75ef282923
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32\config
Group: Malware file
Last Updated: December 9, 2010
%APPDATA%\Microsoft\Internet Explorer\ccss.exe File name: ccss.exe
Size: 126.46 KB (126464 bytes)
MD5: 88d275f4d42b3ad57c863c7edb17c4f2
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Internet Explorer
Group: Malware file
Last Updated: December 8, 2010
Loading...