Threat Database Worms W32.Jabberbot

W32.Jabberbot

By GoldSparrow in Worms

W32.Jabberbot is a worm that proliferates through removable drives and opens a back door on the targeted PC. Once activated, W32.Jabberbot creates the file. W32.Jabberbot may create the registry entries so that it can start automatically whenever you boot up Windows. W32.Jabberbot may also try to distribute itself through removable drives by replicating itself as the specific file. W32.Jabberbot then opens a back door on the corrupted PC by communicating over the XMPP network enabling the remote cybercriminal to fufill harmful activities such as upload, download, delete, and execute files, execute commands, harvest system information, navigate and list directory contents, visit websites and prevent itself from executing.

SpyHunter Detects & Remove W32.Jabberbot

File System Details

W32.Jabberbot may create the following file(s):
# File Name MD5 Detections
1. %System%\[RANDOM FILE NAME].exe
2. %DriveLetter%\2_luxaeternabytaenarongc3luxaeternabytaenaluxaeternabytaenaluxaeternabytaena.scr
3. file.exe 3d539ed8f15ce5d6a04c0d6720645893 0

Registry Details

W32.Jabberbot may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\"EXPLORER" = "%System%\[RANDOM FILE NAME].exe"

Trending

Most Viewed

Loading...