Home Malware Programs Worms Worm.Phorpiex.P

Worm.Phorpiex.P

Posted: December 12, 2012

Threat Metric

Threat Level: 5/10
Infected PCs: 742
First Seen: December 12, 2012
Last Seen: October 20, 2022
OS(es) Affected: Windows

Aliases

Generic30.AQUI [AVG]W32/PornoAsset.BHXI!tr [Fortinet]TR/Malagent.A.4000 [AntiVir]Trojan-Ransom.Win32.PornoAsset.bhxi [Kaspersky]TrojanRansom.PornoAsset.bhxi [CAT-QuickHeal]Dropper.Generic3.MCB [AVG]Trojan.SuspectCRC [Ikarus]Trojan.DownLoader5.28565 [DrWeb]Gen:Heur.MSIL.Krypt.2 [BitDefender]Win32.TRDropper [eSafe]Generic.grp!gb [McAfee]Generic Malware [Panda]Dropper.Generic6.AAUE [AVG]Trojan.Win32.Sefnit [Ikarus]Trojan.Generic.KDV.657771 [GData]
More aliases (228)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe File name: wins.exe
Size: 2.59 MB (2597888 bytes)
MD5: e7d04ad7008c476bbf4c21a8fb4f889a
Detection count: 283
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe
Group: Malware file
Last Updated: October 1, 2022
%APPDATA%\Adobe\AdobeUpdaterInstallMgr.exe File name: AdobeUpdaterInstallMgr.exe
Size: 87.04 KB (87040 bytes)
MD5: d5bbe5b083b71d64e8adac2ea2a404b9
Detection count: 103
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Adobe
Group: Malware file
Last Updated: December 17, 2012
%COMMONPROGRAMFILES%\BOONTY Shared\Service\Boonty.exe File name: Boonty.exe
Size: 69.12 KB (69120 bytes)
MD5: 473a642afe7b31c82857b9fdb302ad1c
Detection count: 80
File type: Executable File
Mime Type: unknown/exe
Path: %COMMONPROGRAMFILES%\BOONTY Shared\Service
Group: Malware file
Last Updated: January 28, 2019
%allusersprofile%\Documents\svchast.exe File name: svchast.exe
Size: 786.63 KB (786635 bytes)
MD5: c65ec8ff5bd4e63d824d4f18ed00078d
Detection count: 49
File type: Executable File
Mime Type: unknown/exe
Path: %allusersprofile%\Documents
Group: Malware file
Last Updated: December 17, 2012
%APPDATA%\FacbookUpdate.exe File name: FacbookUpdate.exe
Size: 130.56 KB (130560 bytes)
MD5: 7a400cc027686115cf442b0814cd0242
Detection count: 49
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 17, 2012
%SystemDrive%\$Recycle$\B8DEA5BB490.exe File name: B8DEA5BB490.exe
Size: 217.08 KB (217088 bytes)
MD5: 46f120e10100261c2a6fe850c48a5f6f
Detection count: 32
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\$Recycle$
Group: Malware file
Last Updated: December 17, 2012
%LOCALAPPDATA%\NCH Swift Sound\lndyqxjy.dll File name: lndyqxjy.dll
Size: 297.98 KB (297984 bytes)
MD5: ef1b3af373a12fbe6d44ba6b00f96120
Detection count: 31
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\NCH Swift Sound
Group: Malware file
Last Updated: December 17, 2012
%USERPROFILE%\gundaltocijy.exe File name: gundaltocijy.exe
Size: 36.79 KB (36792 bytes)
MD5: cf978369d5dfa2c93441445b7dbbe731
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: December 17, 2012
%LOCALAPPDATA%\Apple\wmjsxyhn.dll File name: wmjsxyhn.dll
Size: 326.65 KB (326656 bytes)
MD5: ca79f0f83e5c498796d40c86105e2544
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Apple
Group: Malware file
Last Updated: December 17, 2012
%USERPROFILE%\Local Settings\Application Data\Replay Video Capture 5\woernzby.dll File name: woernzby.dll
Size: 326.65 KB (326656 bytes)
MD5: ce3561b14785cc182313fad1cdb32262
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%\Local Settings\Application Data\Replay Video Capture 5
Group: Malware file
Last Updated: December 17, 2012
%LOCALAPPDATA%\Canon\agdvflag.dll File name: agdvflag.dll
Size: 331.77 KB (331776 bytes)
MD5: 3ed77dd1a7f88bb23c570a50f6317745
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Canon
Group: Malware file
Last Updated: December 13, 2012
C:\Users\<username>\Desktop\memoria GEM\utiles\9_utilidades\antimalwares\AT-Destroyer.exe File name: AT-Destroyer.exe
Size: 515.72 KB (515724 bytes)
MD5: 60c4e6218efb164bb59145e84649c77f
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Desktop\memoria GEM\utiles\9_utilidades\antimalwares\AT-Destroyer.exe
Group: Malware file
Last Updated: April 29, 2022
%USERPROFILE%\Application Data\nvvsvc.exe.exe File name: nvvsvc.exe.exe
Size: 1.53 KB (1536 bytes)
MD5: f3c7f3ba05eb2e752778f44f790bc869
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Application Data
Group: Malware file
Last Updated: December 17, 2012
%TEMP%\taskinit.exe File name: taskinit.exe
Size: 911.36 KB (911360 bytes)
MD5: fc7b764d63b1483d722368f41d16a85c
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 13, 2012
%APPDATA%\18CD.exe File name: 18CD.exe
Size: 421.37 KB (421376 bytes)
MD5: 70d841e01032525b8ce1158113154c6f
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: January 14, 2013
%USERPROFILE%\Start Menu\Programs\Startup\winlogin.exe File name: winlogin.exe
Size: 836.14 KB (836144 bytes)
MD5: 1d3a973657f01f168c3708b326b5ebdf
Detection count: 0
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: December 17, 2012
Loading...