Home Malware Programs Viruses W32/Rimecud.gen.db

W32/Rimecud.gen.db

Posted: September 26, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 77
First Seen: September 26, 2012
OS(es) Affected: Windows

W32/Rimecud.gen.db is a dangerous computer Virus that may spread and infect other systems through removable media such as USB drives or writable CDs. Other means of W32/Rimecud.gen.db spreading is through systems connected to the same network as a PC with the W32/Rimecud.gen.db virus. W32/Rimecud.gen.db may cause connectivity issues by disrupting internet or network communication. Removal of W32/Rimecud.gen.db is easily performed using an updated antispyware app.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



7zsfx.exe File name: 7zsfx.exe
Size: 152.06 KB (152064 bytes)
MD5: 115a572c730c06ef6b35ef13baf2e582
Detection count: 67
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: September 27, 2012
7zsfx.exe File name: 7zsfx.exe
Size: 141.31 KB (141312 bytes)
MD5: 89a0fe8673066f08c52836ae6c581652
Detection count: 66
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: September 27, 2012
7zsfx.exe File name: 7zsfx.exe
Size: 142.33 KB (142336 bytes)
MD5: d1e667a38de9baff9722bb367821b819
Detection count: 65
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: September 27, 2012

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\INTERNET EXPLORER\PHISHINGFILTER\HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\INTERNET EXPLORER\RECOVERY\HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS\LOCKDOWN_ZONES\HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS\LOCKDOWN_ZONES\1\HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS\LOCKDOWN_ZONES\2\HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS\LOCKDOWN_ZONES\3\HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS\LOCKDOWN_ZONES\4\
Loading...