Home Malware Programs Spyware Generic.dx!baaq

Generic.dx!baaq

Posted: July 22, 2011

Generic.dx!baaq is a dangerous generic computer Trojan which can create more malicious codes once it is executed. Generic.dx!baaq will usually attach itself to certain files on the PC system with a try to hide itself inside the normal files. Generic.dx!baaq may also download unwanted corrupt files from the Internet to occupy the computer system's space. Generic.dx!baaq runs in the background and sends outbound traffic. Generic.dx!baaq can slow down your computer's performance. Generic.dx!baaq is a serious threat to PC system's security, so it needs to be removed immediately after detection.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 C:\Documents and Settings\[user name]\Application Data
    2 C:\Documents and Settings\[user name]\Local Settings\Temp
    3 C:\Documents and Settings\[user name]\Local Settings\Temporary Internet Files
    4 C:\Program Files\
    5 C:\WINDOWS\system32\

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "CheckExeSignatures" = 'no'HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main "Use FormSuggest" = 'yes'HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "CertificateRevocation" = '0'HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "WarnonBadCertRecving" = '0'HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "[RANDOM CHARACTERS]"HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "[RANDOM CHARACTERS].exe"
Loading...