Worm:Win32/Rimecud.B

Posted: October 12, 2010
Threat Metric
Threat Level: 5/10
Infected PCs 1,672

Worm:Win32/Rimecud.B Description

Worm:Win32/Rimecud.B is a variant of a malicious computer worm that stealthily enters the system so that the user remains unaware of its existence. Worm:Win32/Rimecud.B opens a backdoor for devious trojan programs and other malware by downloading a corrupt file and running it on your computer. Worm:Win32/Rimecud.B will try to steal usernames and passwords to send them to a hacker. Once infected, the computer may be rendered defenseless as Worm:Win32/Rimecud.B disables all anti-spyware programs. Show Worm:Win32/Rimecud.B no mercy by terminating it immediately.

Worm:Win32/Rimecud.B

Aliases


Trj/Bredolab.BE [Panda]Generic18.BWLF [AVG]W32/Katusha.MK!tr [Fortinet]Trojan-Dropper.Agent [Ikarus]Backdoor/Win32.Bredolab.gen [Antiy-AVL]Backdoor/Bredolab.ehkWin32/Inject.ZT [eTrust-Vet]Trojan-Dropper.Agent!IKTrojan-Downloader.Win32.Reipym.c (v)Trojan.Win32.Zbot.141312.BGen:Variant.Kazy.1007 [BitDefender]Trojan-Spy.Win32.Zbot.aqdd [Kaspersky]Win32:MalOb-CS [Cryp] [Avast]Trojan.Win32.Heur.099W32/Suspicious_Gen2.LVOJO
More aliases (838)

Use SpyHunter to Detect and Remove PC Threats

If you are concerned that malware or PC threats similar to Worm:Win32/Rimecud.B may have infected your computer, we recommend you start an in-depth system scan with SpyHunter. SpyHunter is an advanced malware protection and remediation application that offers subscribers a comprehensive method for protecting PCs from malware, in addition to providing one-on-one technical support service.

Download SpyHunter's Malware Scanner

Note: SpyHunter's free version is only for malware detection. If SpyHunter detects malware on your PC, you will need to purchase SpyHunter's malware tool to remove the malware threats. Learn more on SpyHunter. If you would like to uninstall SpyHunter for any reason, please follow these uninstall instructions. To learn more about our policies and practices, visit our EULA, Privacy Policy and Threat Assessment Criteria.

Why can't I open any program including SpyHunter? You may have a malware file running in memory that kills any programs that you try to launch on your PC. Tip: Download SpyHunter from a clean computer, copy it to a USB thumb drive, DVD or CD, then install it on the infected PC and run SpyHunter's malware scanner.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%USERPROFILE%msgvn.exe File name: msgvn.exe
Size: 143.36 KB (143360 bytes)
MD5: d608c5edcbf88e3577d95451fdca6979
Detection count: 192
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: May 27, 2011
C:\RECYCLER\S-1-5-21-5909602920-0406704781-601124746-7767\sysdata.exe File name: sysdata.exe
Size: 81.4 KB (81408 bytes)
MD5: 5b68ec9e7b57249106d6813bd970c2f5
Detection count: 76
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-5909602920-0406704781-601124746-7767\
Group: Malware file
Last Updated: December 6, 2010
%TEMP%m.2A1.tmp.exe File name: m.2A1.tmp.exe
Size: 2.71 MB (2716672 bytes)
MD5: 30d46685d53f19525550667e15a465c4
Detection count: 73
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
%APPDATA%xcjv.exe File name: xcjv.exe
Size: 148.99 KB (148992 bytes)
MD5: e615eec2d6a3e99498c0d3d2135b6d2b
Detection count: 73
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 8, 2010
C:\RECYCLER\S-1-5-21-0538194149-5878946227-087073025-2837\sysdate.exe File name: sysdate.exe
Size: 131.58 KB (131584 bytes)
MD5: c08a6fd8a92a225eba454e46eee3533a
Detection count: 73
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-0538194149-5878946227-087073025-2837\
Group: Malware file
Last Updated: December 21, 2010
C:\RECYCLER\S-1-5-21-6130537987-3583446188-855012502-2550\MsMxEng.exe File name: MsMxEng.exe
Size: 246.27 KB (246279 bytes)
MD5: b93ea14aa1c780a75f319dd40b6d1b15
Detection count: 63
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-6130537987-3583446188-855012502-2550\
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\S-1-5-21-3908995983-4553403636-508827506-3824\rundll.exe File name: rundll.exe
Size: 163.84 KB (163840 bytes)
MD5: 2c4ab46bd9ba962bd03ead7bc034beeb
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\S-1-5-21-3908995983-4553403636-508827506-3824\
Group: Malware file
Last Updated: September 14, 2012
%USERPROFILE%vfksuiwrljk.exe File name: vfksuiwrljk.exe
Size: 140.8 KB (140800 bytes)
MD5: 88255b41c25fbaf440be9beea01c5cde
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: December 5, 2011
%APPDATA%\MSA\baka1.exe File name: baka1.exe
Size: 160.76 KB (160768 bytes)
MD5: a7e90d6b32178bcb43aa9650588f3809
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\MSA\
Group: Malware file
Last Updated: December 7, 2010
%TEMP%2B8.tmp File name: 2B8.tmp
Size: 159.74 KB (159744 bytes)
MD5: 592723b1891a3d4fbbbb159d1c326a9b
Detection count: 16
File type: Temporary File
Mime Type: unknown/tmp
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2010
C:\RECYCLER\S-1-5-21-6467320353-3100469652-458574603-8225\Setupin.exe File name: Setupin.exe
Size: 259.07 KB (259072 bytes)
MD5: 5feaf0278a536cdd1115d1974d9ee4af
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-6467320353-3100469652-458574603-8225\
Group: Malware file
Last Updated: May 31, 2011
C:\RECYCLER\S-1-5-21-2698146651-5187462587-336051445-3093\csisd.exe File name: csisd.exe
Size: 82.94 KB (82944 bytes)
MD5: 98bfe16503d3c887cfe801107f9f759c
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-2698146651-5187462587-336051445-3093\
Group: Malware file
Last Updated: January 2, 2011
E:\RECYCLER\S-1-5-21-3334112167-4054920604-612434568-9011\mwau.exe File name: mwau.exe
Size: 162.81 KB (162816 bytes)
MD5: a2c6939e1df4b7428f9c35122b571b56
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: E:\RECYCLER\S-1-5-21-3334112167-4054920604-612434568-9011\
Group: Malware file
Last Updated: January 16, 2011
C:\RECYCLER\S-1-5-21-0297808608-5871367268-540124143-8950\syscr.exe File name: syscr.exe
Size: 105.47 KB (105472 bytes)
MD5: cdeb6f0c909a21c4c4d37a5280783598
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-0297808608-5871367268-540124143-8950\
Group: Malware file
Last Updated: December 7, 2010
C:\RECYCLER\S-1-5-21-0159701170-0288577790-280249941-2057\svmgr.exe File name: svmgr.exe
Size: 82.94 KB (82944 bytes)
MD5: 1b94a6d3a720505076db85318268a410
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-0159701170-0288577790-280249941-2057\
Group: Malware file
Last Updated: January 9, 2011
%APPDATA%\Defender\Defender.exe File name: Defender.exe
Size: 143.36 KB (143360 bytes)
MD5: 506b8a07a3d3e077ad7a7b57d09a9a2a
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Defender\
Group: Malware file
Last Updated: February 28, 2011
C:\RECYCLER\S-1-5-21-9202371887-5551625214-459141844-5493\winmap.exe File name: winmap.exe
Size: 98.3 KB (98304 bytes)
MD5: eb13a66c72160092b5ed70f1591fea0e
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-9202371887-5551625214-459141844-5493\
Group: Malware file
Last Updated: December 21, 2010
C:\RECYCLER\S-1-5-21-0196194439-4530585517-755521310-5759\csisf.exe File name: csisf.exe
Size: 98.3 KB (98304 bytes)
MD5: e6477d4249ba8eba67d6c99fb601e51f
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-0196194439-4530585517-755521310-5759\
Group: Malware file
Last Updated: January 18, 2011
%SystemDrive%\RECYCLER\S-1-5-21-8157645747-7797130459-466660191-3779\nvapbar.exe File name: nvapbar.exe
Size: 188.92 KB (188928 bytes)
MD5: 4b9763f730f7d6382336706ae8738b39
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-8157645747-7797130459-466660191-3779\
Group: Malware file
Last Updated: July 4, 2011
%SystemDrive%\RECYCLER\S-1-5-21-4589794679-2684821042-453488121-2664\sysinfo.exe File name: sysinfo.exe
Size: 103.42 KB (103424 bytes)
MD5: 0e2647772bf52242345b785fbcbb61ca
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\RECYCLER\S-1-5-21-4589794679-2684821042-453488121-2664\
Group: Malware file
Last Updated: January 8, 2013
%APPDATA%ooyi.exe File name: ooyi.exe
Size: 148.99 KB (148992 bytes)
MD5: b5405de270ba1c6992459940ab7ae0b0
Detection count: 4
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 8, 2010

More files

Home Malware Programs Worms Worm:Win32/Rimecud.B

One Comment

Leave a Reply

Please note that we are not able to assist with billing and support issues regarding SpyHunter or other products. If you're having issues with SpyHunter, please get in touch with SpyHunter customer support through your SpyHunter. If you have SpyHunter billing questions, we recommend you check the Billing FAQ. For general suggestions or feedback, contact us.