Home Malware Programs Worms Worm.Esfury

Worm.Esfury

Posted: October 29, 2010

Threat Metric

Threat Level: 5/10
Infected PCs: 180
First Seen: October 12, 2010
Last Seen: July 3, 2022
OS(es) Affected: Windows

Worm.Esfury is a network-aware computer worm that will attempt to replicate across an existing network. Worm.Esfury also spreads using Windows networking APIs, MAPI functions or email clients such as Microsoft Outlook. Worm.Esfury can create email messages with corrupt attachments often containing downloads of itself. Worm.Esfury entices users with messages suggesting that the recipient should open the attachment to see something interesting or important. Do not trust this cyber menace, rather remove the threat by using a reliable malware remover.

Aliases

Generic Trojan [Panda]Dropper.Generic2.AFTM [AVG]Trojan.Injector [Ikarus]Trojan/Win32.VBKrypt.gen [Antiy-AVL]Trojan.Win32.VBKrypt.hhj [Kaspersky]Win32:Dropper-gen [Avast]W32/VB.CF.gen!Eldorado [F-Prot]a variant of Win32/Injector.CPS [NOD32]Trojan [K7AntiVirus]Generic.dx!tkv [McAfee]Worm.Esfury.A [CAT-QuickHeal]Generic Worm [Panda]Dropper.Generic2.AOSM [AVG]W32/VB.fam [Fortinet]Trojan.Click [Ikarus]
More aliases (69)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%USERPROFILE%\v care1\winlogon.exe File name: winlogon.exe
Size: 118.78 KB (118784 bytes)
MD5: 04a2307579abe1f9f1808aba0b2af323
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\v care1
Group: Malware file
Last Updated: January 23, 2012

More files
Loading...