Home Malware Programs Trojans Vundo.gen!AP

Vundo.gen!AP

Posted: November 30, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 2,691
First Seen: November 30, 2010
Last Seen: April 15, 2023
OS(es) Affected: Windows

Aliases

Gen:Variant.Kazy.2404 [BitDefender]Packed.Win32.Tdss.r (v) [Sunbelt]Heuristic.LooksLike.Heuristic.BehavesLike.Win32.Ro [McAfee-GW-Edition]SHeur3.BDDB [AVG]a variant of Win32/Kryptik.FYT [NOD32]Mal/Katusha-A [Sophos]Gen:Trojan.Heur.FU.kuW@aKkAAJmi [BitDefender]W32/Katusha.D2.gen!Eldorado [F-Prot]New Malware.ko [McAfee]Generic19.BNYE [AVG]W32/MultiDL.C!tr.dldr [Fortinet]Packed.Win32.Katusha [Ikarus]LooksLike.Win32.Malware!D (v) [Sunbelt]Packed/Win32.Katusha [Antiy-AVL]Win32/FakeAV.M!generic [eTrust-Vet]
More aliases (255)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\tgi.dll File name: tgi.dll
Size: 52.22 KB (52224 bytes)
MD5: 1baeb01755c8b482301e06c1305d2c90
Detection count: 454
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 1, 2010
%TEMP%\dfrgsnapnt.exe File name: dfrgsnapnt.exe
Size: 467.28 KB (467280 bytes)
MD5: b7ab46fd362d440fcf56e125bc5a5cad
Detection count: 190
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 1, 2010
%TEMP%\dfrgsnapnt.exe File name: dfrgsnapnt.exe
Size: 467.28 KB (467280 bytes)
MD5: 863d6c40b63a675967d4dc4517e87d81
Detection count: 112
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 1, 2010
%TEMP%\dfrgsnapnt.exe File name: dfrgsnapnt.exe
Size: 450.89 KB (450896 bytes)
MD5: 2e9e22495faf341e27fc02238119714a
Detection count: 103
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 1, 2010
%TEMP%\3859062.exe File name: 3859062.exe
Size: 359.42 KB (359424 bytes)
MD5: 8eb2c736ac3d9ac7d36986dd3ab3edf0
Detection count: 72
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 1, 2010
%WINDIR%\system32\wuaucldt.exe File name: wuaucldt.exe
Size: 33.28 KB (33280 bytes)
MD5: 9b29b04fc1e4c6ec77b3b3dd7286dbac
Detection count: 70
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 1, 2010
%TEMP%\8168181.exe File name: 8168181.exe
Size: 358.91 KB (358912 bytes)
MD5: 7ae40f80b064f5c68169c88b45fcb8d6
Detection count: 65
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 1, 2010
%TEMP%\YuwkxxiyvS.exe File name: YuwkxxiyvS.exe
Size: 453.12 KB (453120 bytes)
MD5: f5aaac8aea7ece3bba1d10951486fa85
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 1, 2010
%TEMP%\WOWKtxsCPP.exe File name: WOWKtxsCPP.exe
Size: 452.09 KB (452096 bytes)
MD5: 9738e3ff658a1056cbcfa16008ed03eb
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 1, 2010
%TEMP%\0.07878598591236008.exe File name: 0.07878598591236008.exe
Size: 31.76 KB (31764 bytes)
MD5: f6648097036f6f081fd71f685113ea4e
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: November 30, 2010
%TEMP%\vbmfwrbm.exe File name: vbmfwrbm.exe
Size: 23.04 KB (23040 bytes)
MD5: 2596bcf4cccf1ef98adfa3bf3c351b74
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 1, 2010
%WINDIR%\system32\wmpdf3.exe File name: wmpdf3.exe
Size: 261.12 KB (261120 bytes)
MD5: f981485727256ecb549c5f032a9b2d76
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 1, 2010
%TEMP%\0.832674387812879.exe File name: 0.832674387812879.exe
Size: 31.76 KB (31764 bytes)
MD5: ec1eb9e037e0c32e2e7e500dfa044829
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: January 16, 2011
%WINDIR%\system32\wuaucldt.exe File name: wuaucldt.exe
Size: 33.28 KB (33280 bytes)
MD5: d8edec6ed3ff6a68c4fba7791b4040f5
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 1, 2010
%USERPROFILE%\Start Menu\Programs\Startup\wmplfv.exe File name: wmplfv.exe
Size: 241.66 KB (241664 bytes)
MD5: 59a92c3474826f105d1e976ee546c522
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Start Menu\Programs\Startup
Group: Malware file
Last Updated: December 1, 2010
%TEMP%\0.998684336074492.exe File name: 0.998684336074492.exe
Size: 174.08 KB (174080 bytes)
MD5: 45993532c16ec528415945257be39e6c
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 6, 2010
%TEMP%\0.03977107911305389.exe File name: 0.03977107911305389.exe
Size: 31.76 KB (31764 bytes)
MD5: bd21830c603f6a92e48bcb9fea722e76
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 1, 2010
%TEMP%orary Internet Files\Content.IE5\J0X498TP\scanner[1].exe File name: scanner[1].exe
Size: 182.78 KB (182784 bytes)
MD5: 6efb2a7db3342e2420cbd32071071865
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%orary Internet Files\Content.IE5\J0X498TP
Group: Malware file
Last Updated: December 1, 2010
%APPDATA%\system32\svchost.exe File name: svchost.exe
Size: 868.35 KB (868352 bytes)
MD5: 65b51050f03ae2efe6a9c6132871f069
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\system32
Group: Malware file
Last Updated: December 1, 2010
%TEMP%\dfrgsnapnt.exe File name: dfrgsnapnt.exe
Size: 450.89 KB (450896 bytes)
MD5: d836cbe684c97052bbc534712354a260
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 1, 2010

More files
Loading...