Home Malware Programs Trojans Srizbi

Srizbi

Posted: October 1, 2008

Threat Metric

Threat Level: 9/10
Infected PCs: 88
First Seen: July 24, 2009
OS(es) Affected: Windows

Srizbi is a spamming trojan used by botnets. Botnets are zombie machines that run programs like Srizbi Trojan to send large amounts of spam, install malware onto a computer or other malicious purposes. Srizbi is now responsible for nearly 40% of spam. Srizbi is extremely clandestine, relying on rootkit technology to hide its network activities and bypass sniffer tools. Srizbi is quite advanced and provides continuous feedback and statistics to control servers about which email addresses are good, and which are bad.

Aliases

Mal/EncPk-CK [Sophos]TrojanDropper:Win32/Srizbi.gen!D [Microsoft]Trojan-Dropper.Win32.Srizbi.D [Ikarus]Suspicious File [eSafe](Suspicious) - DNAScan [CAT-QuickHeal]SHeur.BCEK [AVG]TR/Crypt.XPACK.Gen [AntiVir]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



6EE4.tmp File name: 6EE4.tmp
Size: 151.55 KB (151552 bytes)
MD5: 684a5a292e22c161cc3476b6bf02e188
Detection count: 99
File type: Temporary File
Mime Type: unknown/tmp
Group: Malware file
Last Updated: January 8, 2010
CLADD File name: CLADD
Size: 184.32 KB (184320 bytes)
MD5: 6243841e717fc624a31187cbb4b81637
Detection count: 10
Group: Malware file
Last Updated: December 11, 2009
Loading...