Worm:Win32/Rebhip.gen!A
Worm:Win32/Rebhip.gen!A is a worm that is proliferates via removable drives by replicating itself. Worm:Win32/Rebhip.gen!A strives to steal confidential information from the victim. While being installed on the corrupted machine, Worm:Win32/Rebhip.gen!A makes system changes by downloading malevolent files and modifying the Windows Registry. Worm:Win32/Rebhip.gen!A creates the registry entry so that it can load automatically whenever Windows is started. Worm:Win32/Rebhip.gen!A may also open the Internet Explorer process 'iexplore.exe' and embed a malevolent code into it. Worm:Win32/Rebhip.gen!A then writes an Autorun configuration file called 'autorun.inf', which points to the copy of Worm:Win32/Rebhip.gen!A. If the drive is accessed from a computer, which supports the Autorun feature, Worm:Win32/Rebhip.gen!A runs automatically. Worm:Win32/Rebhip.gen!A steals private details by gathering various data about the victimized PC, such as what anti-virus program is installed, and which processes or services are presently running. Worm:Win32/Rebhip.gen!A may also log keystrokes and grab passwords. Worm:Win32/Rebhip.gen!A transfers its collected data to a remote attacker.
File System Details
# | File Name |
Detections
Detections: The number of confirmed and suspected cases of a particular threat detected on
infected computers as reported by SpyHunter.
|
---|---|---|
1. | [system folder]\install\system.exe | |
2. | %windir%\install\update.exe | |
3. | [system folder]\WinDefence\windefence32.exe | |
4. | [system folder]\backup\winbackup.exe | |
5. | [system folder]\taskmanager\task.exe | |
6. | [system folder]\windows\windows.exe | |
7. | %Temp%\uuu.uuu | |
8. | %Temp%\xxx.xxx |
Submit Comment
Please DO NOT use this comment system for support or billing questions. For SpyHunter technical support requests, please contact our technical support team directly by opening a customer support ticket via your SpyHunter. For billing issues, please refer to our "Billing Questions or Problems?" page. For general inquiries (complaints, legal, press, marketing, copyright), visit our "Inquiries and Feedback" page.