Home / Spyware Encyclopedia / Worm.Agent << Back

Recommendation to Automatically remove Worm.Agent


Our products can remove Worm.Agent and thousands of other Virus and Spyware automatically and instantly.

Worm.Agent Details


  • Category Worm
  • Discovered 8/6/2009 10:42:02 AM
  • Modified 8/21/2024 5:20:26 PM
  • Threat Level Critical
  • Category Description
    A Worm is a malicious program that spreads itself without any user intervention. Worms spread without attaching to or infecting other programs and files. A Worm can spread across computer networks via security holes on vulnerable machines connected to the network and also through email by sending copies of itself to everyone in the user's address book. A Worm may consume a large amount of system resources and cause the machine to become noticeably sluggish and unreliable.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
5f6a4007.exe 6836736virtualgirls6.0.2900.5512a26e7abeed5c9a94b1e7a2ff96367267 
lc_ip4~1.exe 6547456virtual girls6.0.2900.55120e5bd50e540c67a09f9a439c255477c8 
4cc61c04.exe 14848software1.0.0.05af727712fd138c769f97e3bbf8ad2bb 
8A94CEDA.EXE 81992Software1.0.0.05ac07afd268a9719d437c949cac0c85e 
B0527EE8.EXE 81992Software1.0.0.04366aef013c0b4db4c7ce6fea56295f9 
regedit.exe 43781Nullsoft5.1.0.10  
cliporv.exe 99449microsoft corporation9.5.2599.2184602d01633316433014e688598683be28 
02ceo.jpg 99449microsoft corporation9.5.2599.2184602d01633316433014e688598683be28 
frmwrk32.exe 31744microsoft corporation5.0.2195.6625f9994c1fef86670edaa7904b6ad8aa57 
d67926c1.exe 129024Lool a28be87580dd68187e8a92873090b9a2 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"syshost"\"%win%\syshost.exe"
..\Software\Microsoft\system\lght\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\zhudongfangyu.exe\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"windows workstation"\"%das.au.ls%\temp\scvhost.exe"
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\ravstub.exe\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"54dfsger"\"%root%\docume~1\admin\locals~1\temp\xvassdf.exe"
..\System\CurrentControlSet\Enum\root\legacy_svcname\(Default)
..\System\CurrentControlSet\Enum\root\legacy_csrsss\(Default)
..\Software\Microsoft\Windows\CurrentVersion\RunServices\\"nynequ"\"%win.sys32%\foodapezoor.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"nynequ"\"%win.sys32%\foodapezoor.exe"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware