Home / Spyware Encyclopedia / Worm.Bozori << Back

Recommendation to Automatically remove Worm.Bozori


Our products can remove Worm.Bozori and thousands of other Virus and Spyware automatically and instantly.

Worm.Bozori Details


  • Category Worm
  • Discovered 2/20/2009 10:26:00 AM
  • Modified 2/21/2019 11:42:01 AM
  • Threat Level Critical
  • Category Description
    A Worm is a malicious program that spreads itself without any user intervention. Worms spread without attaching to or infecting other programs and files. A Worm can spread across computer networks via security holes on vulnerable machines connected to the network and also through email by sending copies of itself to everyone in the user's address book. A Worm may consume a large amount of system resources and cause the machine to become noticeably sluggish and unreliable.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
baiduc.dll 151552Syons.Fae2.0.0.07392d782b8106dc26ab7fb6d63e1d92a 
baiduc.dll 163840Syons.Fae2.0.0.023b25817c5dd167a0b3441088bd9309f 
baiduc.dll 159744Hello Loons.Fad2.0.0.01375d320536a20a2b1b8402d384c416e 
IETimber.dll 193912????????1.0.0.136c56c0f69df06f8184d3ef0b96b907c 
015B7560.EXE 15486  e922143ab91bd7097e30d337512365c4 
33B675D9.EXE 22654  8ade72acba7ff6d8b8bbbabbc33ba24f 
697C02E0.EXE 15998  83ca5a6b7ac7e7e595d5a1c97934d3fd 
9B632DC2.EXE 13438  81ab97ffd042e68eb651d6ef511c6098 
849BF094.EXE 27262  3d1adac9e5992db48d33cf23386e670e 
25A768B5.EXE 13950  356c1ff6530331205e44a69b02cd2eed 

The following Registry Entries were created:
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\safeboxTray.EXE\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rsnetsvr.EXE\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\naPrdMgr.EXE\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mcshield.EXE\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ccSetMgr.EXE\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ccEvtMgr.EXE\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\WOPTILITIES.EXE\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VsTskMgr.EXE\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VPTRAY.EXE\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VPC32.EXE\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware