PTHC INCEST PEDO - MOM FONDLES SON.EXE
What you should do about PTHC INCEST PEDO - MOM FONDLES SON.EXE:
The most common objects with the name of PTHC INCEST PEDO - MOM FONDLES SON.EXE have yet to be classified as safe by our research department.
If you are concerned that your PC might be infected why not try our Free version of Prevx 3.0. It will thoroughly check your PC for millions of active Spyware and malware infections and takes less than 2 minutes. Don't take the risk, check your PC now.
What we know about PTHC INCEST PEDO - MOM FONDLES SON.EXE:
PTHC INCEST PEDO - MOM FONDL.....EXE
AUTOMATED MALWARE PROFILE, ANALYSIS, REMOVAL AND SIGNATURE INFORMATION:
DEFINITION OF: PTHC INCEST PEDO - MOM FONDL.....EXE
- Safety Rating: Known Malware, do not run
- Malware Family: Part of Malware group - Win32 Malware gen
- Malware Form: EXPLOIT
- Protection: Prevx provides powerful security products that you can use to detect, remove and protect you from PTHC INCEST PEDO - MOM FONDL.....EXE and safeguard your PC against viruses, trojans, worms, spyware, rootkits and adware
- Why risk having spyware on your PC when it takes less than 2 minutes to thoroughly check it with Prevx CSI? Click here to check your PC with Prevx CSI Now.
- First seen: Aug 23 2006 (GMT)
- Last seen: Aug 23 2006 (GMT)
- File Size: 65,536 bytes
1. COVERT ANALYSIS OF: PTHC INCEST PEDO - MOM FONDL.....EXE
- File Names Used: 12
- Paths Used: 16
- Common File Name: PTHC INCEST PEDO - MOM FONDL.....EXE
- Common Path: %LOCALAPPDATA%\
- Vendor Information: No Vendor details specified
- Version Information: 1.0.2426.26174
- PTHC INCEST PEDO - MOM FONDL.....EXE may use 12 or more path and file names, these are the most common:
- 1 :%LOCALAPPDATA%\TEMP.EXE
- 2 :%programfiles%\emule\inco...a dvd to mp4 converter\YASA DVD TO MP4 CONVERTER.EXE
- 3 :%TEMP%\3204_ZIP_DUMP.EXE
- 4 :%temp%\aawtmp\c2714093\e74b1\KIDS TEENS WOMEN (PORNO-LOLI.....EXE
- 5 :%temp%\aawtmp\c6663140\232916\KIDS TEENS WOMEN (PORNO-LOLI.....EXE
- 6 :%TEMP%\PTHC - K6 - 10YO-MASTURBATION.EXE
- 7 :%TEMP%\RAR$EX00.062\PTHC INCEST PEDO - MOM FONDL.....EXE
- 8 :%TEMP%\RAR$EX00.641\PTHC INCEST PEDO - MOM FONDL.....EXE
- 9 :%temp%\temporary director...imusic wave editor.zip\FLEXIMUSIC WAVE EDITOR.EXE
- 10:?:\my shared folder\emule...a dvd to mp4 converter\YASA DVD TO MP4 CONVERTER.EXE
- File Name Structure: Normal
- File and Path Structure: Suspicious, code execution from unusual location
2. RELATIONSHIP ANALYSIS OF: PTHC INCEST PEDO - MOM FONDL.....EXE
- Malicious Objects Created: 1 objects
- Malicious Creators: 3
- Malware Run Keys: None
- Self Persists:
- Antivirus Detection: No third party antivirus detection observed
- Anti-Spyware Detection: No third party anti-spyware detection observed
3. ACTIVITY ANALYSIS OF: PTHC INCEST PEDO - MOM FONDL.....EXE
- The following behaviors have been observed for this object:
- Installs programs.
- Deletes programs.
- Invokes dll components.
- Creates Run Keys.
- Runs other programs.
- Communicates with web sites using httpout protocols.
- Has outbound communications.
- Creates known malware.
- Creates copies of itself.
4. PROPAGATION ANALYSIS OF: PTHC INCEST PEDO - MOM FONDL.....EXE
- Malware Group Propagation Rate: Moderate (spreading)
- Malware Group: Win32 Malware gen
- Copyright Prevx Limited 2005, 2006
