GLB34.TMP - Dangerous
What you should do about GLB34.TMP:
You should urgently check your PC and remove any malicious software including GLB34.TMP as soon as possible.
The free version of Prevx CSI will scan your PC for millions of spyware and malware infections in less than 2 minutes. Don't take the risk, check your PC now.
What we know about GLB34.TMP:
GLB34.TMP
AUTOMATED MALWARE PROFILE, ANALYSIS, REMOVAL AND SIGNATURE INFORMATION:
DEFINITION OF: GLB34.TMP
- Safety Rating: Known Malware, do not run
- Malware Family: Part of Malware group - Malware
- Malware Form: EXPLOIT
- Protection: Prevx provides powerful security products that you can use to detect, remove and protect you from GLB34.TMP and safeguard your PC against viruses, trojans, worms, spyware, rootkits and adware
- Why risk having spyware on your PC when it takes less than 2 minutes to thoroughly check it with Prevx CSI? Click here to check your PC with Prevx CSI Now.
- First seen: Nov 17 2005 (GMT)
- Last seen: Nov 17 2005 (GMT)
- File Size: 71,680 bytes
MALWARE ASSESSMENT: PREVX 4 AXES OF EVIL METHODOLOGY
1. COVERT ANALYSIS OF: GLB34.TMP
- File Names Used: 88
- Paths Used: 8
- Common File Name: GLB34.TMP
- Common Path: %TEMP%\
- Vendor Information: No Vendor details specified
- GLB34.TMP may use 88 or more path and file names, these are the most common:
- 1 :%PROFILES%\SERVIDOR\CONFIGURACIÓN LOCAL\TEMP\GLB1FD.TMP
- 2 :%profiles%\wakakaka8\local settings\temp\GLB2D.TMP
- 3 :%TEMP%\GLB105.TMP
- 4 :%TEMP%\GLB16.TMP
- 5 :%TEMP%\GLB1675.TMP
- 6 :%TEMP%\GLB16B.TMP
- 7 :%TEMP%\GLB1AC0.TMP
- 8 :%TEMP%\GLB1C.TMP
- 9 :%TEMP%\GLB2.TMP
- 10:%TEMP%\GLB22C.TMP
- 11:%TEMP%\GLB270.TMP
- 12:%TEMP%\GLB2C64.TMP
- 13:%TEMP%\GLB2C65.TMP
- 14:%TEMP%\GLB2EA.TMP
- 15:%TEMP%\GLB2F.TMP
- File Name Structure: Common
- File and Path Structure: Suspicious, code execution from unusual location
2. RELATIONSHIP ANALYSIS OF: GLB34.TMP
- Malicious Objects Created: 2 objects
- Malicious Creators: None
- Malware Run Keys: None
- Self Persists:
- Antivirus Detection: No third party antivirus detection observed
- Anti-Spyware Detection: No third party anti-spyware detection observed
3. ACTIVITY ANALYSIS OF: GLB34.TMP
- The following behaviors have been observed for this object:
- Installs programs.
- Deletes programs.
- Invokes dll components.
- Runs other programs.
- Communicates with web sites using httpout protocols.
- Changes file execution mappings.
- Creates registry entries.
- Creates known malware.
4. PROPAGATION ANALYSIS OF: GLB34.TMP
- Malware Group Propagation Rate: Moderate (spreading)
- Malware Group: Malware
- Copyright Prevx Limited 2005, 2006
