Home Malware Programs Worms Worm:Win32/Rebhip.A

Worm:Win32/Rebhip.A

Posted: May 18, 2010

Threat Metric

Threat Level: 5/10
Infected PCs: 2,567
First Seen: November 30, 2010
Last Seen: October 9, 2024
OS(es) Affected: Windows

Worm:Win32/Rebhip.A is a malicious computer worm that can propagate via removal USB drives, file-sharing networks and other network shared resources. Worm:Win32/Rebhip.A will inject a malicious code on explorer.exe to run itself on the compromised PC system. Use a proven malware remover to terminate Worm:Win32/Rebhip.A immediately when detected.

Worm:Win32/Rebhip.A

Aliases

Heuristic.BehavesLike.Win32.Backdoor.H [McAfee-GW-Edition]PSW.Generic8.ATEH [AVG]Trojan.Inject.22483 [DrWeb]Mal/KeyGen-M [Sophos]Trojan-Dropper.MSIL.StubRC.gid [Kaspersky]Win32.TRDrop.MSIL.St [eSafe]Win32:PUP-gen [PUP] [Avast]Generic Malware.hk!ats [McAfee]Crypt_c.OQB [AVG]W32/Buzus.LVMS!tr [Fortinet]Trojan-PWS.OnlineGames [Ikarus]Heuristic.LooksLike.Win32.Suspicious.R!89 [McAfee-GW-Edition]Trojan.Win32.Buzus.lvms [Kaspersky]Artemis!1BAB0361735A [McAfee]Trojan.Buzus.lvms [CAT-QuickHeal]
More aliases (2745)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\SysWOW64\system32\windows.exe File name: windows.exe
Size: 419.32 KB (419328 bytes)
MD5: 5c122b916e0e1e1c2135486a86020387
Detection count: 96
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\SysWOW64\system32
Group: Malware file
Last Updated: March 29, 2013
%PUBLIC%\Roaming\Drivers\Updating.exe File name: Updating.exe
Size: 1.35 MB (1352144 bytes)
MD5: 847f3fb1e87ee3d1c284eeacce7019e0
Detection count: 47
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%\Roaming\Drivers
Group: Malware file
Last Updated: January 23, 2013
%USERPROFILE%\Documents\Windows\AudioIntel.exe File name: AudioIntel.exe
Size: 1.03 MB (1038336 bytes)
MD5: 5555eec2932bc20787e9a918995e4762
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Documents\Windows
Group: Malware file
Last Updated: November 26, 2012
%TEMP%\firefox.exe File name: firefox.exe
Size: 458.24 KB (458240 bytes)
MD5: 4395647efa4941d2b3f5942b8f3674b4
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 17, 2012
%TEMP%\jusched.exe File name: jusched.exe
Size: 367.61 KB (367616 bytes)
MD5: 679cecd650d3f4204aa4a6c6884c3795
Detection count: 22
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: March 7, 2013
%WINDIR%\SysWOW64\Win32\winlogons.exe File name: winlogons.exe
Size: 337.93 KB (337932 bytes)
MD5: e8c55501ae2711f9a3a75d1d93fd9558
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\SysWOW64\Win32
Group: Malware file
Last Updated: March 29, 2013
%PROGRAMFILES%\install\dlling.exe File name: dlling.exe
Size: 438.47 KB (438472 bytes)
MD5: a822df3f326b1dc3af441cfc6c2f0d02
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\install
Group: Malware file
Last Updated: December 29, 2022
%PROGRAMFILES%\Microsofts\taskngr.exe File name: taskngr.exe
Size: 492.6 KB (492601 bytes)
MD5: ad2723b8320c7009a908e3216413ae53
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Microsofts
Group: Malware file
Last Updated: June 13, 2021
%WINDIR%\system32\zipfile\Hexor.exe File name: Hexor.exe
Size: 810.49 KB (810496 bytes)
MD5: 2bcddbb119ca340081d754c0538e5dd8
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32\zipfile
Group: Malware file
Last Updated: February 2, 2020
%SystemDrive%\directory\CyberGate\install\svchost.exe File name: svchost.exe
Size: 463.92 KB (463927 bytes)
MD5: 3ba93a13e092f7269def017ae7719683
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\directory\CyberGate\install
Group: Malware file
Last Updated: May 2, 2013
%APPDATA%\Javax suns\Java.exe File name: Java.exe
Size: 274.43 KB (274432 bytes)
MD5: 17dfefdb5d6bd5addf39bf9ed8c471f7
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Javax suns
Group: Malware file
Last Updated: February 11, 2013
%APPDATA%\window\sychost.exe File name: sychost.exe
Size: 590.54 KB (590547 bytes)
MD5: 737c4e8aacf18f87a00b8d86bf17f595
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\window
Group: Malware file
Last Updated: February 6, 2013
%APPDATA%\FacbookUpdate.exe File name: FacbookUpdate.exe
Size: 869.37 KB (869376 bytes)
MD5: b7a15c13ade4ba15ffe3a4d3d8cb645c
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: February 6, 2013
%USERPROFILE%\Desktop\TF2Base\TF2Base.exe File name: TF2Base.exe
Size: 955.39 KB (955392 bytes)
MD5: 38c6692773541f0c158c1d26ef9b2ff5
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Desktop\TF2Base
Group: Malware file
Last Updated: January 23, 2013
%WINDIR%\system32\authcl.exe File name: authcl.exe
Size: 769.26 KB (769264 bytes)
MD5: fc268164e391f97582dd63dbdfb6dae8
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 28, 2013
%APPDATA%\system32\nssrs.exe File name: nssrs.exe
Size: 454.65 KB (454656 bytes)
MD5: 1d68665f304d90c9267946769617e97a
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\system32
Group: Malware file
Last Updated: February 6, 2013
%APPDATA%\install\notepad.exe File name: notepad.exe
Size: 347.02 KB (347022 bytes)
MD5: 61876f0bc5a8a05906208b21f7e94123
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\install
Group: Malware file
Last Updated: February 25, 2013
%APPDATA%\Adobecs5\Adobe.exe File name: Adobe.exe
Size: 943.92 KB (943920 bytes)
MD5: 25902ebe7a4dacd08e6ecdaafdc845dd
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Adobecs5
Group: Malware file
Last Updated: February 22, 2013
%SystemDrive%\directory\CyberGate\rundll\iexplore.exe File name: iexplore.exe
Size: 988.16 KB (988160 bytes)
MD5: e3ac913fefa0c65e53d27897ad120239
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\directory\CyberGate\rundll
Group: Malware file
Last Updated: April 16, 2013
%APPDATA%\updateserver\serverupdate.exe File name: serverupdate.exe
Size: 2.15 MB (2154496 bytes)
MD5: 86982c83ef3a72b38d21d4326661195a
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\updateserver
Group: Malware file
Last Updated: May 8, 2013
%APPDATA%\install\smss.exe File name: smss.exe
Size: 12.82 MB (12823552 bytes)
MD5: 9d5d575cea884a426cbc287ff926a949
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\install
Group: Malware file
Last Updated: April 16, 2013
%TEMP%\winini.exe File name: winini.exe
Size: 296.96 KB (296960 bytes)
MD5: 1cfb4c7af3834c28ffd54c95385040e2
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: April 16, 2013

More files
Loading...