Threat Database Worms Worm.Cambot.A

Worm.Cambot.A

By Sumo3000 in Worms

Threat Scorecard

Threat Level: 50 % (Medium)
Infected Computers: 1,624
First Seen: July 18, 2011
Last Seen: September 28, 2021
OS(es) Affected: Windows

Worm.Cambot.A is a mass-mailing computer worm that circulates through removable drives and sends an email that carries a malicious attachment of itself. Worm.Cambot.A can also download potentially malicious files from the Internet. If your PC is infected with Worm.Cambot.A, it will load additional plug-ins and execute DDoS attacks that won't allow you to access certain applications and websites. Worm.Cambot.A connects to the Internet domain named "play-support-email.com" and then it receives a long list of websites, and when the PC user visits any of these websites, Worm.Cambot.A records the data that the PC user enters such as logins and passwords, and then transmits this information to an attacker via a remote server. Remove Worm.Cambot.A immediately after detection.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
AhnLab-V3 Trojan/Win32.Jorik
Antiy-AVL HackTool/Win32.Kiser.gen
McAfee-GW-Edition Generic.dx!bbj4
AntiVir TR/Agent.294912
BitDefender Trojan.Generic.6702346
Avast Win32:Malware-gen
Symantec Trojan.Gen
McAfee W32/Autorun.worm.beu
AVG Dropper.VB.GKH
Fortinet W32/VBKrypt.BBBQ!tr
Ikarus Trojan.Win32.VBKrypt
AhnLab-V3 Worm/Win32.VBNA
Antiy-AVL Worm/Win32.VBNA.gen
eTrust-Vet Win32/BsBot!generic
AntiVir TR/VB.Downloader.Gen

SpyHunter Detects & Remove Worm.Cambot.A

File System Details

Worm.Cambot.A may create the following file(s):
# File Name MD5 Detections
1. OP1ZQFKNB9D.exe 74456146687b70206d1e7bac1e122e67 49
2. OP1ZQFKNB9D.exe 4d3053605ecf3b3577c042bc4793d98c 29
3. OP1ZQFKNB9D.exe 329156274f307615e9c891e688b1439d 15
4. IJ9QXB7I1XP.exe 6f46e7ad49b0d597bc5d219c88044a28 9
5. Java.exe 68212eae7122b15b8ca34066577c82aa 2
6. 1219.exe 8e372111edcbf4dc07cc7979ba8798b5 1
7. %APPDATA%\goolge.exe
8. %TEMP%\goolge.exe.jpg

URLs

Worm.Cambot.A may call the following URLs:

play-support-email.com

Trending

Most Viewed

Loading...