Threat Database Worms Worm.Esfury

Worm.Esfury

Threat Scorecard

Threat Level: 50 % (Medium)
Infected Computers: 77
First Seen: October 12, 2010
Last Seen: July 3, 2022
OS(es) Affected: Windows

Worm.Esfury is a worm that propagates via removable or network drives. Once Worm.Esfury is inside a machine it will connect to a remote website to receive commands. Worm.Esfury will also change the default page of Internet Explorer and modify the system settings. Worm.Esfury makes a compromised system vulnerable to additional attacks therefore it must be removed upon detection.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
Panda Generic Trojan
AVG Dropper.Generic2.AFTM
Ikarus Trojan.Injector
Antiy-AVL Trojan/Win32.VBKrypt.gen
Kaspersky Trojan.Win32.VBKrypt.hhj
Avast Win32:Dropper-gen
F-Prot W32/VB.CF.gen!Eldorado
NOD32 a variant of Win32/Injector.CPS
K7AntiVirus Trojan
McAfee Generic.dx!tkv
CAT-QuickHeal Worm.Esfury.A
Panda Generic Worm
AVG Dropper.Generic2.AOSM
Fortinet W32/VB.fam
Ikarus Trojan.Click

SpyHunter Detects & Remove Worm.Esfury

File System Details

Worm.Esfury may create the following file(s):
# File Name MD5 Detections
1. winlogon.exe dd82421a6535722ed7cbf23538c31573 26
2. winlogon.exe ba76d54f033bb4627f20dbc2f390ed91 16
3. winlogon.exe 9afdd3c9ab12d8bfe45d046d150bd47c 12
4. winlogon.exe b4e82a0d4030bf1536cf5724fa3a2bd5 10
5. winlogon.exe edd7d51ffe2581410536940a542e5648 4
6. winlogon.exe 71ef96965effa98d7291c839e6ee9ca3 3
7. winlogon.exe d9d5839a63b8d3e5841fedb17ea9f589 1

Related Posts

Trending

Most Viewed

Loading...