Home Malware Programs Trojans VB.WF

VB.WF

Posted: December 27, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 281
First Seen: December 27, 2010
Last Seen: January 28, 2023
OS(es) Affected: Windows

Aliases

TR/Crypt.CFI.Gen [AntiVir]Unvirex [Symantec]TR/Crypt.XPACK.Gen2 [AntiVir]Sus/UnkPack-C [Sophos]Trojan.FakeAV!gen42 [Symantec]a variant of Win32/Kryptik.JDW [NOD32]FakeAlert-MalDoctor.g [McAfee]Hiloti.CI [AVG]Mal/Hiloti-D [Sophos]Hiloti.gen.l [McAfee]Trojan.FakeAV.3172 [DrWeb]Trojan.Generic.KD.94885 [BitDefender]Trojan.FakeAV-3882 [ClamAV]Gen.Variant.Kazy [Ikarus]Artemis!02608CE3980F [McAfee-GW-Edition]
More aliases (86)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%TEMP%\aHvFmtjxlhgIe.exe File name: aHvFmtjxlhgIe.exe
Size: 502.27 KB (502272 bytes)
MD5: 02608ce3980fa5faf43f9cd468f446d9
Detection count: 190
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 28, 2010
%WINDIR%\system32\NlsData000d32.exe File name: NlsData000d32.exe
Size: 1.37 MB (1375744 bytes)
MD5: 6b0205477d65f08288162ec7e58a3d89
Detection count: 93
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 28, 2010
%LOCALAPPDATA%\zlxfmompe.exe File name: zlxfmompe.exe
Size: 195.07 KB (195072 bytes)
MD5: 22c374a7facbe7e808a5ae872207538d
Detection count: 34
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: December 28, 2010
%TEMP%\xdbsxikdl\crqytiqlajb.exe File name: crqytiqlajb.exe
Size: 320.51 KB (320512 bytes)
MD5: 3d6c53a7e61e8c993d23355a4e995577
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%\xdbsxikdl
Group: Malware file
Last Updated: January 2, 2011
%APPDATA%\Microsoft\svchost.exe File name: svchost.exe
Size: 200.7 KB (200704 bytes)
MD5: cfac7113643dd843d7c9a5418bf37490
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft
Group: Malware file
Last Updated: December 28, 2010
%APPDATA%\9B883D46B60D3D7BCCE2B3F8EA1B144A\patchcore716pe0.exe File name: patchcore716pe0.exe
Size: 1.05 MB (1053696 bytes)
MD5: 64de2bc74f6756b3274f902b9782922d
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\9B883D46B60D3D7BCCE2B3F8EA1B144A
Group: Malware file
Last Updated: January 2, 2011
%LOCALAPPDATA%\pleneWl.dll File name: pleneWl.dll
Size: 75.77 KB (75776 bytes)
MD5: 9ebe17ce71889bcb95bca5b4ed396116
Detection count: 2
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: January 2, 2011
Loading...