Associated Malware Groups
The filename is associated with the malware group:
- Fraudulent Security Program
File Behavior
02158068.SVD has been seen to perform the following behavior:
- The Process is packed and/or encrypted using a software packing process
- Registers a Dynamic Link Library File
- Can communicate with other computer systems using HTTP protocols
- Adds products to the system registry
- Disables the Notification Balloon for the Windows Security Center
- Automatically changes your firewall settings to allow itself or other programs to communicate over the internet
- Modifies Windows Security Policies to restrict/expand User Privileges on the machine
- Disables Access to the Task Manager built into Windows
- Disables Access to the Windows Registry Editior
- Writes to another Process's Virtual Memory (Process Hijacking)
- Executes a Process
- This process creates other processes on disk
- Terminates Processes
- This Process Deletes Other Processes From Disk
- Executes Processes stored in Temporary Folders
02158068.SVD has been the subject of the following behavior:
- Has code inserted into its Virtual Memory space by other programs
- Executed as a Process
- Created as a process on disk
- Terminated as a Process
- Deleted as a process from disk
- Added as a Registry auto start to load Program on Boot up
Country Of Origin
The filename 02158068.SVD was first seen on Jun 24 2008 in the following geographical regions of the Webroot community:
- The United States on Jun 24 2008
- Kenya on Jul 11 2008
- Botswana on Aug 15 2008
- Egypt on Sep 14 2008
- India on Jan 6 2009
- Vietnam on Dec 19 2009
- The United Kingdom on Dec 19 2009
- Turkey on May 22 2012
File Name Aliases
02158068.SVD can also use the following file names:
- SMART VIRUS REMOVER.EXE
- SMART VIRUS REMOVER.EXE
- 59633262.SVD
- 20946939.EXE
- 24786174.EXE
- 42137305.EXE
- 33693706.EXE
- 51941635.DAT
- 22964498.EXE
- 76010709.SVD
Filesizes
The following file size has been seen:
- 544,327 bytes
- 390,737 bytes
- 384,512 bytes
- 388,081 bytes
- 423,043 bytes
- 389,369 bytes
- 388,457 bytes
File Type
The filename 02158068.SVD refers to many versions of an executable program.
Help the Webroot Community to fight cyber crime
We are always looking for ways to improve the quality and speed of research to help us protect you from malicious software and cyber crime.
PCMag.com Editors' Choice Award Logo is a trademark of Ziff Davis Publishing Holdings Inc. Used under license.