Home / Spyware Encyclopedia / Worm.Agent << Back

Recommendation to Automatically remove Worm.Agent


Our products can remove Worm.Agent and thousands of other Virus and Spyware automatically and instantly.

Worm.Agent Details


  • Category Worm
  • Discovered 8/6/2009 10:42:02 AM
  • Modified 8/21/2024 5:20:26 PM
  • Threat Level Critical
  • Category Description
    A Worm is a malicious program that spreads itself without any user intervention. Worms spread without attaching to or infecting other programs and files. A Worm can spread across computer networks via security holes on vulnerable machines connected to the network and also through email by sending copies of itself to everyone in the user's address book. A Worm may consume a large amount of system resources and cause the machine to become noticeably sluggish and unreliable.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
frmwrk32.exe 31744microsoft corporation5.0.2195.6625f9994c1fef86670edaa7904b6ad8aa57 
d67926c1.exe 129024Lool a28be87580dd68187e8a92873090b9a2 
2F76ED3B.EXE 66413KILORE1.0.0.0b36e198b1f1999d0081aed7c97560e2c 
haxfix.exe 485902haxdoor, goldun and spybanker removaltool5.0.2.82d3fe977bc7db275d9ebb3663efcc48d 
C4EE5D9A.EXE 1504462222222221.1.1.16b749627f535741d6ce36821f952a5fa 
821A7325.EXE 319488????,?????1.0.0.07ce21310dc90f412649edf9ea25150ef 
d9bcffe2.exe 2459664 192.168.0.135f166c7d831db5b330c03b40c86eb18 
24276B88.EXE 67072 192.168.0.1  
winlog.EXE 69632 192.168.0.1  
winlog.EXE 67072 192.168.0.1  

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"syshost"\"%win%\syshost.exe"
..\Software\Microsoft\system\lght\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\zhudongfangyu.exe\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"windows workstation"\"%das.au.ls%\temp\scvhost.exe"
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\ravstub.exe\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"54dfsger"\"%root%\docume~1\admin\locals~1\temp\xvassdf.exe"
..\System\CurrentControlSet\Enum\root\legacy_svcname\(Default)
..\System\CurrentControlSet\Enum\root\legacy_csrsss\(Default)
..\Software\Microsoft\Windows\CurrentVersion\RunServices\\"nynequ"\"%win.sys32%\foodapezoor.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"nynequ"\"%win.sys32%\foodapezoor.exe"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware