Threat Database Worms Worm.Win32.Rebhip

Worm.Win32.Rebhip

Threat Scorecard

Threat Level: 70 % (High)
Infected Computers: 40
First Seen: October 8, 2010
Last Seen: June 27, 2020
OS(es) Affected: Windows

Worm.Win32.Rebhip is a Windows platform worm that can deteriorate the performance of an infected machine. Worm.Win32.Rebhip can spread via poorly protected networks and removable USB drives. On entering a system, Worm.Win32.Rebhip will gather a victim's private data and send it to a remote server. Worm.Win32.Rebhip is a security threat that should not be taken lightly.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
Panda Generic Malware
AVG Worm/Generic2.ANQI
Fortinet W32/Injector.FHJ!tr
Ikarus Gen.Variant.Inject
AhnLab-V3 Win-Trojan/Agent.100352.EV
Antiy-AVL Backdoor/Win32.Inject.gen
Sophos Troj/Buzus-FZ
AntiVir TR/Inject.12.24
DrWeb Trojan.Inject.28852
Comodo Heur.Suspicious
BitDefender Gen:Variant.Inject.12
eSafe Win32.Injector.Fjs
Avast Win32:Kryptik-BAY
NOD32 a variant of Win32/Injector.FJS
McAfee BackDoor-EXI.gen.j

SpyHunter Detects & Remove Worm.Win32.Rebhip

File System Details

Worm.Win32.Rebhip may create the following file(s):
# File Name MD5 Detections
1. winupdate.exe 1490f5f58ed8d3c08a4426ace01189f6 17
2. winlog.exe 49a277fd66bbda545c931738c3290353 5
3. wimlogon.exe 43cee74b1933fe036b02704d44704180 3
4. server.exe 0adecd3cb9348eb448a29976a0e71291 2
5. csrss.exe c834627ccb82d0c918ace4597fe10905 2
6. configpb.exe fc4ceee487556a0144e4107e724574e3 1

Registry Details

Worm.Win32.Rebhip may create the following registry entry or registry entries:
Regexp file mask
%APPDATA%\Microsoft\System32.exe
%APPDATA%\System\System32.exe

Trending

Most Viewed

Loading...