Home Malware Programs Viruses Win32.Rmnet.16

Win32.Rmnet.16

Posted: May 14, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 87
First Seen: May 14, 2012
OS(es) Affected: Windows

Win32.Rmnet.16 is a virus that has a digital signature used to sign a control server IP-address. Win32.Rmnet.16 is written in C and Assembly and comprises of a few functional modules. The injector that deploys Win32.Rmnet.16 in the PC system injects its code into web browser processes, saves its driver into a temporary folder and runs it as a Micorsoft Windows Service, then copies the body of Win32.Rmnet.16 into a temporary directory and startup folder. The body file has a random name and the extension .exe. The backdoor payload of Win32.Rmnet.16 can perform commands gained from a remote server, particularly, to download and execute arbitrary files, update itself, to take screenshots and transmit them to cyber-criminals, and even make the targeted computer system non-operational. Remove Win32.Rmnet.16 immediately after detection.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



tk85.dll File name: tk85.dll
Size: 1.42 MB (1424384 bytes)
MD5: c7fd191cb40819c8aec4cce070f6e06e
Detection count: 80
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: June 22, 2012
file.exe File name: file.exe
Size: 581.12 KB (581120 bytes)
MD5: 3fa4b347a707a6397817496563f624db
Detection count: 78
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: June 22, 2012
file.exe File name: file.exe
Size: 581.12 KB (581120 bytes)
MD5: 20cf03337dcc36caeadd560f0763234a
Detection count: 77
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: June 22, 2012
file.exe File name: file.exe
Size: 356.35 KB (356352 bytes)
MD5: 851394f4f760cda9409e40f4b8006ae7
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: June 22, 2012
tcl85.dll File name: tcl85.dll
Size: 972.28 KB (972288 bytes)
MD5: 25199b2fbcf6c75657c0d49b66d94af2
Detection count: 13
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: June 22, 2012
Loading...