Worm Mytob – 00cb3acabebc708170a3497c242aa64c

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Mytob
Also known as: Worm MyDoom, Backdoor IRCBot
SHA256: 5339708092cea6dd723d2cb495fec79158603552dc6456109c17a0984d7b51e1
SHA1: 5691bf74695b7c9a63e46faf2895dcc0e4634876
MD5: 00cb3acabebc708170a3497c242aa64c
File size: 59392 bytes

Created files:

C:\funny_pic.scr – Worm Mytob
C:\hellmsn.exe – Worm Mytob
C:\my_photo2005.scr – Worm Mytob
C:\see_this!!.scr – Worm Mytob
%SysDir%\taskgmr32.exe – Worm Mytob

Worm Mytob created autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\WINTASK: taskgmr32.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\WINTASK: taskgmr32.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\WINTASK: taskgmr32.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\MSMSGS: “%Program Files%\Messenger\msmsgs.exe” /background

Leave a Reply