Home Malware Programs Worms W32/Rimecud

W32/Rimecud

Posted: March 9, 2010

Threat Metric

Threat Level: 5/10
Infected PCs: 368
First Seen: November 30, 2010
OS(es) Affected: Windows

W32/Rimecud is a malicious computer worm that can propagate via removal USB drives, Yahoo and MSN Messenger, file-sharing network and network shared resources. W32/Rimecud will inject a malicious code on explorer.exe to run itself on the compromised PC system. Use a proven malware remover to terminate W32/Rimecud when detected.

W32/Rimecud

Aliases

W32/Autorun.JLR [Panda]W32/Injector.HMH!tr [Fortinet]WORM_KOLAB.SMF [TrendMicro]Mal/EncPk-ACW [Sophos]Trojan [K7AntiVirus]Trojan.Refroso.ndx.n4 [CAT-QuickHeal]Trj/Zlob.KH [Panda]W32/CodecPack.KOH!tr.dldr [Fortinet]Win32/Palevo.worm.251911.B [AhnLab-V3]Win32/ASuspect.HAEGG [eTrust-Vet]TR/Injector.tpc [AntiVir]TrojWare.Win32.Injector.AUS [Comodo]Trojan.Downloader-88636 [ClamAV]Win32.Inject.Wn [eSafe]Win32:Inject-YC [Avast]
More aliases (160)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\RECYCLER\S-1-5-21-8957919621-9968929798-373532296-5470\yv8g67.exe File name: yv8g67.exe
Size: 184.32 KB (184320 bytes)
MD5: 94863eb254c5c4dc9736ead9b94d1972
Detection count: 311
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-8957919621-9968929798-373532296-5470
Group: Malware file
Last Updated: December 1, 2010
C:\RECYCLER\S-1-5-21-9340699121-5048794999-158976311-6268\twain_x86.exe File name: twain_x86.exe
Size: 3.55 MB (3559424 bytes)
MD5: efd75a8e2a70d9fd157b558b3ea90c00
Detection count: 88
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-9340699121-5048794999-158976311-6268
Group: Malware file
Last Updated: November 30, 2010
C:\RECYCLER\S-1-5-21-9863373563-2306912953-877334665-5143\MsMxEng.exe File name: MsMxEng.exe
Size: 251.91 KB (251911 bytes)
MD5: e350d67a2c4e6c46e81966b2b29820be
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-9863373563-2306912953-877334665-5143
Group: Malware file
Last Updated: March 28, 2011
C:\RECYCLER\S-1-5-21-5473023079-2123386866-299579093-9768\schl.exe File name: schl.exe
Size: 360.96 KB (360960 bytes)
MD5: 006cffad064beeaddc277c34e9e97b9f
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-5473023079-2123386866-299579093-9768
Group: Malware file
Last Updated: February 22, 2013

More files

Related Posts

Loading...