Home / Spyware Encyclopedia / Worm.Agent << Back

Recommendation to Automatically remove Worm.Agent


Our products can remove Worm.Agent and thousands of other Virus and Spyware automatically and instantly.

Worm.Agent Details


  • Category Worm
  • Discovered 3/13/2009 10:43:11 AM
  • Modified 4/4/2024 3:11:31 PM
  • Threat Level Critical
  • Category Description
    A Worm is a malicious program that spreads itself without any user intervention. Worms spread without attaching to or infecting other programs and files. A Worm can spread across computer networks via security holes on vulnerable machines connected to the network and also through email by sending copies of itself to everyone in the user's address book. A Worm may consume a large amount of system resources and cause the machine to become noticeably sluggish and unreliable.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
4cc61c04.exe 14848software1.0.0.05af727712fd138c769f97e3bbf8ad2bb 
8A94CEDA.EXE 81992Software1.0.0.05ac07afd268a9719d437c949cac0c85e 
B0527EE8.EXE 81992Software1.0.0.04366aef013c0b4db4c7ce6fea56295f9 
regedit.exe 43781Nullsoft5.1.0.10  
frmwrk32.exe 31744microsoft corporation5.0.2195.6625f9994c1fef86670edaa7904b6ad8aa57 
821A7325.EXE 319488????,?????1.0.0.07ce21310dc90f412649edf9ea25150ef 
RunVG.exe 297309 3.2.12.1d244db4f1061b6f4b17cfa817956bb05 
empty_13.exe 260876 3.2.12.187333258738dc848393d33337071d9ca 
svchost32.exe 147163 1.0.0.0  
B3C1F026.EXE 60928  ff03752142484fcd317b26a9943eca43 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"syshost"\"%win%\syshost.exe"
..\Software\Microsoft\system\lght\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\zhudongfangyu.exe\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"windows workstation"\"%das.au.ls%\temp\scvhost.exe"
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\ravstub.exe\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"54dfsger"\"%root%\docume~1\admin\locals~1\temp\xvassdf.exe"
..\System\CurrentControlSet\Enum\root\legacy_svcname\(Default)
..\System\CurrentControlSet\Enum\root\legacy_csrsss\(Default)
..\Software\Microsoft\Windows\CurrentVersion\RunServices\\"nynequ"\"%win.sys32%\foodapezoor.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"nynequ"\"%win.sys32%\foodapezoor.exe"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware