Home Malware Programs Worms Worm.Rochap.A

Worm.Rochap.A

Posted: May 31, 2012

Threat Metric

Threat Level: 5/10
Infected PCs: 94
First Seen: January 9, 2012
Last Seen: September 20, 2021
OS(es) Affected: Windows

Worm.Rochap.A is a worm, which can proliferate to Windows PCs via a lot of penetration ways. Windows Live messaging i one of the most popular distribution channels of Worm.Rochap.A. Worm.Rochap.A can use your chat accounts for spreading itself further to other PCs. Worm.Rochap.A can also spread through encrypted downloads or fake video codecs. Once installed on a compromised PC system, Worm.Rochap.A will not be easy to uninstall Worm.Rochap.A from the machine, because it can disguise itself from detection and elimination. Worm.Rochap.A makes some computer system changes. Worm.Rochap.A uses a large amount of system resources; therefore, it slows down your computer. Worm.Rochap.A can also lead to Internet connectivity problems. Worm.Rochap.A removes privileges to some essential Windows applications. Worm.Rochap.A can compromise, add and remove processes inside the Windows Registry, add them to the Windows startup, create Internet connection to remote servers, and even launch browser helper object activity to record sensitive details.

Aliases

SHeur4.HGN [AVG]W32/ROCHAP.AB!worm [Fortinet]Win32/Rochap.worm.2246144 [AhnLab-V3]Win32/Sasfis.ODB [eTrust-Vet]TR/Agent.2246144 [AntiVir]Trojan.Inject.56981 [DrWeb]Trojan.Generic.KDV.403509 [BitDefender]Trojan.Win32.Sasfis.cmxk [Kaspersky]W32/FakeAlert.TY [F-Prot]Win32/Spy.Delf.OXS [NOD32]Downloader-AVV [McAfee]Trojan.Agent.WD.cw8 [CAT-QuickHeal]SHeur3.COTI [AVG]W32/Injector.BOJ!tr [Fortinet]Trojan-Downloader.Win32.Zeagle [Ikarus]
More aliases (133)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%USERPROFILE%\bd6d0c44-5728.exe File name: bd6d0c44-5728.exe
Size: 43.52 KB (43520 bytes)
MD5: 7a7b3e4792f5df88243434a717bd8280
Detection count: 53
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: January 11, 2012
%USERPROFILE%\cb58dc4-5689.exe File name: cb58dc4-5689.exe
Size: 49.15 KB (49152 bytes)
MD5: 1ee5dc5c318224a02e9b228e670ada38
Detection count: 45
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: January 16, 2012
%APPDATA%\Google_Tool_Bar_Notification060.exe File name: Google_Tool_Bar_Notification060.exe
Size: 4.5 MB (4505600 bytes)
MD5: 9a937848dea1096d81cf135a26edf164
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: January 10, 2012
%APPDATA%\Google_Tool_Bar_Notification069.exe File name: Google_Tool_Bar_Notification069.exe
Size: 7.14 MB (7147008 bytes)
MD5: 45b7f36a47ba18211f191308b63e9e89
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: March 12, 2013
%APPDATA%\Sender_niver40.exe File name: Sender_niver40.exe
Size: 2.91 MB (2917888 bytes)
MD5: 1729d907121669a1ca95f36b92b5172b
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: April 8, 2013
%APPDATA%\Google_Tool_Bar_Notification061.exe File name: Google_Tool_Bar_Notification061.exe
Size: 4.56 MB (4562432 bytes)
MD5: 7730a6a87dbe303c85093bdba2aa346d
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: January 10, 2012
Loading...