downloader.win32.agent.dbih
Threat Name: downloader.win32.agent.dbih, it attempts to download and install other malware onto the affected system. it is a win32 downloader threat.
Spread Method:
Instant Message(MSN,Gtalk,QQ etc.)
Threat type:downloader.win32
downloader.win32.agent.dbih first detected:2010-02-27
Virus file known is PE EXE file written in Java
File Size:607K Bytes.
Behavior:Copies files to the Windows system directory
Level of Spread:6
Level of Threat:2
Reported Path:Unkonow path
MD5:B5M007CXFbqu1o830v4Ihc182JR7ePGs
SHA1..:JVu32Ddfn36vL52S38Vpp1KGNraD4xo6rE7QQL44
Alias:
CA:Backdoor.Win32.Agent.qnf
Panda :Trojan-PSW.Win32.LdPinch.edm
K7AntiVirus:Backdoor.Win32.Agent.qti
Norton Antivirus:AdWare.Win32.SuperJuan.dfa
SecureWeb:Worm.Win32.AutoRun.qtn
Vexira :Trojan-Downloader.Win32.Obfuscated.due
Report Countries:
Greece
France
Belgium
New Zealand
downloader.win32.agent.dbih Removal instructions:
Upgrade AV program database
Upgrade AV program database
How to remove downloader.win32.agent.dbih :
1.Delete downloader.win32.agent.dbih file ,Restart your computer to safe mode and run a whole scan of your PC.
Need help? Post you problem on Free Malware Remove Help forum
downloader.win32.agent.dbih Summary
1.Temporarily Disable System Restore;2.Reboot computer in SafeMode;3.delte downloader.win32.agent.dbih virus files and kill downloader.win32.agent.dbih file task process(if have);4.Delete/Modify any values added to the registry by downloader.win32.agent.dbih ;5.delete IE temp files,restart the computer and run a whole scan with Kaspersky, VBA32. downloader.win32.agent.dbih virus files as following:
hi
I need to know the root cause for this malware. Mostly all the popular CA has its signature, but i want to know how this malware will enter into our machine.
Thanks