Home Malware Programs Worms Worm/Yahos.mg

Worm/Yahos.mg

Posted: February 1, 2011

Threat Metric

Ranking: 16,688
Threat Level: 5/10
Infected PCs: 2,740
First Seen: December 22, 2010
Last Seen: October 8, 2023
OS(es) Affected: Windows

Worm/Yahos.mg is a dangerous Internet worm which attacks systems and records user activity. Worm/Yahos.mg has the ability to lower security settings, so even secure systems are prone to infections of this nature.

One symptom to look out for here is a slow internet connection. This worm also modifies registry entries to enable its automatic execution whenever Windows boots up.

Worm/Yahos.mg keeps track of browsing habits and sends all the stolen information to a predetermined remote server which the scammers behind this attack acces for their own malicious reasons. Experts say a hasty removal of Worm/Yahos.mg is a absolute must for computer safety. Do so immediately using a well-known malware remover with a proven track record.

Aliases

W32/Slenfbot.AH.worm [Panda]Generic4_c.BDXR [AVG]W32/Yahos.D!worm.im [Fortinet]Win-Trojan/Buzus.74240.BL [AhnLab-V3]Worm/Yahos.jj [AntiVir]Win32.HLLW.Siggen.1570 [DrWeb]IM-Worm.Win32.Yahos.jj [Kaspersky]Win32.GenVariant.Pal [eSafe]W32/Trojan4.YAQ [F-Prot]Generic Trojan [Panda]Rozena [AVG]W32/SLENFBOT.SM!tr [Fortinet]Worm.Win32.Slenfbot [Ikarus]Win-Trojan/Buzus.98304.FB [AhnLab-V3]Win32/Slenfbot.QT [eTrust-Vet]
More aliases (386)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SYSTEMDRIVE%\Disco extraíble\Adobe Premier Pro CS3 por Cabra Dolly Productions S.A\Crack\Keygen_2.exe File name: Keygen_2.exe
Size: 176.12 KB (176128 bytes)
MD5: 8d193d72244a8f06625f5cb916f8d99b
Detection count: 738
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Disco extraíble\Adobe Premier Pro CS3 por Cabra Dolly Productions S.A\Crack\Keygen_2.exe
Group: Malware file
Last Updated: October 10, 2023
K:\DOROTA kopia laptopa\Programy\CD_Deamon_freeware\daemon4091-x86.exe File name: daemon4091-x86.exe
Size: 1.8 MB (1806232 bytes)
MD5: 3586c3a79940552f2f8c1ed96907504e
Detection count: 515
File type: Executable File
Mime Type: unknown/exe
Path: K:\DOROTA kopia laptopa\Programy\CD_Deamon_freeware\daemon4091-x86.exe
Group: Malware file
Last Updated: October 8, 2023
%PUBLIC%\nvsvc32.exe File name: nvsvc32.exe
Size: 90.11 KB (90112 bytes)
MD5: bfe70f7e87506ff91c11f9b626158fcb
Detection count: 83
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: February 1, 2011
%WINDIR%\nvsvc32.exe File name: nvsvc32.exe
Size: 94.2 KB (94208 bytes)
MD5: cac3a1b6c3cb53cf531f14661c6d4053
Detection count: 76
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: February 1, 2011
%PUBLIC%\nvsvc32.exe File name: nvsvc32.exe
Size: 94.2 KB (94208 bytes)
MD5: be9c85c24390bd527c57cc1aa59a4241
Detection count: 66
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: February 1, 2011
%PUBLIC%\nvsvc32.exe File name: nvsvc32.exe
Size: 102.4 KB (102400 bytes)
MD5: 000eea87c0d026cbfe6b35bab76f5c78
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: February 7, 2011
%PUBLIC%\nvsvc32.exe File name: nvsvc32.exe
Size: 98.3 KB (98304 bytes)
MD5: 715c40c456ab26ce6f7064b4cc8b0938
Detection count: 43
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: February 16, 2011
%WINDIR%\nvsvc32.exe File name: nvsvc32.exe
Size: 81.92 KB (81920 bytes)
MD5: 0e56721b3f384d461d2caacb75bd5532
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: March 14, 2011
%WINDIR%\nvsvc32.exe File name: nvsvc32.exe
Size: 67.07 KB (67072 bytes)
MD5: c411760eed25f674bd186d75d8066167
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: January 9, 2011
%WINDIR%\nvsvc32.exe File name: nvsvc32.exe
Size: 131.07 KB (131072 bytes)
MD5: 70bc114849415426f1ba302b167109cf
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: February 1, 2011
%PUBLIC%\nvsvc32.exe File name: nvsvc32.exe
Size: 98.3 KB (98304 bytes)
MD5: 5c1d2f87b0198fa317f56258ed10533f
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: April 1, 2011
%WINDIR%\nvsvc32.exe File name: nvsvc32.exe
Size: 65.02 KB (65024 bytes)
MD5: 9b23e8cc7df9052fa3e02db32243b98b
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: December 28, 2010
%PUBLIC%\nvsvc32.exe File name: nvsvc32.exe
Size: 94.2 KB (94208 bytes)
MD5: e44518cecc780037f7b62b63f14d8745
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: March 22, 2011
%USERPROFILE%\Documenti\Immagini\facebook-image1401925763.exe File name: facebook-image1401925763.exe
Size: 62.46 KB (62464 bytes)
MD5: 41d1a852ef069a91d80554c5a17ad67e
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Documenti\Immagini
Group: Malware file
Last Updated: December 22, 2010
%PUBLIC%\nvsvc32.exe File name: nvsvc32.exe
Size: 94.2 KB (94208 bytes)
MD5: 19e6e9709afe441626b857503f42dd72
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: February 7, 2011
C:\downloads\EZdrummer FULL cracked NEW\KeyGen.exe File name: KeyGen.exe
Size: 121.27 KB (121275 bytes)
MD5: 932906d943c4525ff4cff6a56ab0c182
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: C:\downloads\EZdrummer FULL cracked NEW
Group: Malware file
Last Updated: December 28, 2010
%PUBLIC%\nvsvc32.exe File name: nvsvc32.exe
Size: 59.39 KB (59392 bytes)
MD5: e712346aced51cbdfc60152491557119
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: February 28, 2011
%USERPROFILE%\gsyzq.exe File name: gsyzq.exe
Size: 205.31 KB (205312 bytes)
MD5: 4c5179792e9c84ca1584dcdd9288ac41
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: January 5, 2011
%PUBLIC%\nvsvc32.exe File name: nvsvc32.exe
Size: 94.2 KB (94208 bytes)
MD5: d604f4ce75bc7609a2495fe84063e27f
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PUBLIC%
Group: Malware file
Last Updated: January 24, 2011
%WINDIR%\nvsvc32.exe File name: nvsvc32.exe
Size: 106.49 KB (106496 bytes)
MD5: ef49e2b44696c70d85740a03f631abea
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: February 1, 2011
Loading...