Home Malware Programs Trojans Generic Malware.dq

Generic Malware.dq

Posted: August 9, 2011

Generic Malware.dq is a backdoor Trojan that was first detected in 2009 but continues to remain in circulation up to the present day. Like all backdoor Trojans, Generic Malware.dq has shown behavior that SpywareRemove.com malware analysts deem harmful to the infected computer's security, especially with respect to launching without permission and being accompanied by other serious PC threats, such as worms and rootkits. Despite the potential severity of a Generic Malware.dq threat to your computer's security, symptoms of a Generic Malware.dq attack may be minimal or nonexistent, and you should use good security software to detect and delete Generic Malware.dq infections rather than trying to deal with them unaided.

Generic Malware.dq: Another Reason to Be Careful Where You Get Your Software From

Despite being several years old, Generic Malware.dq is still circulating in the present day, and SpywareRemove.com malware analysts have found Generic Malware.dq infections as late as August of 2011. Many, if not all Generic Malware.dq infections spread by bundling themselves with various types of unrelated programs, including:

  • File-compressing programs such as unzippers and other types of compression programs.
  • Gaming applications, including small, retro and indie game programs.
  • Software for converting and manipulating audio files.
  • Key generators and other types of criminal software that bypass DRM.
  • Generically-named .exe files such as the prolific 'sample_1.exe.'

To prevent Generic Malware.dq from infecting your PC, take special care to avoid files like the ones above unless you're downloading them from a trustworthy source. Since SpywareRemove.com malware experts have found that Generic Malware.dq, typical of most Trojans, will alter the Registry to let itself start up automatically as a background process, you may become infected after installing the program even if there are no visible signs of Generic Malware.dq.

The Risks and Recognition Factors for Generic Malware.dq

Generic Malware.dq is also known by a variety of aliases, any of which may be used by various brands of security programs when they detect Generic Malware.dq. Some common names for Generic Malware.dq include Win32/ExprPacked.suspicious, Suspicious.MH690, Trojan-Dropper.Agent, Mal/Generic-A, VirTool:Win32/VBInject.CB, Backdoor:Win32/IRCbot.gen!K, Trojan-Downloader.Win32.Banload and Win32/ExprPacked.suspicious.
 
The precise symptoms between different variants of Generic Malware.dq, such as Generic Malware.dq!05873C053419 or Generic Malware.dq!5863C1B4F989, may vary significantly, but all currently-known Generic Malware.dq infections derive from the following basic traits that SpywareRemove.com malware analysts have observed:

  • Generic Malware.dq is a backdoor Trojan that attacks your security. It may do this by blocking security-related programs such as virus scanners, or Generic Malware.dq may create various alterations to your security settings, especially with regards to your Windows Firewall and network ports.
  • Generic Malware.dq corrupts the Registry so that Generic Malware.dq will launch whenever Windows starts, and will remain active without any visible signs of its presence other than, in some cases, the existence of an unfamiliar memory process.
  • Generic Malware.dq often installs itself alongside other types of malicious software. SpywareRemove.com malware research team has found other backdoor Trojans like Backdoor:Win32/Rbot.gen, dropper Trojans like Trojan-Downloader.Win32.Small.bizb and even rootkits like Rootkit.Win32.Agent.cea all in evidence next to Generic Malware.dq infections. Generic Malware.dq or affiliated Trojans may also download other types of malicious software, including rogue defragmenters like Personal Pro System or browser hijackers like Click.giftload.

As a serious security risk, Generic Malware.dq should be removed with all due speed, but deleting Generic Malware.dq is best left to the capabilities of an updated and competent anti-malware program, preferably in Safe Mode.

Aliases

GenericMalwaredq

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%UserProfile%\Start Menu\Generic Malware.dq\Registration.lnk File name: %UserProfile%\Start Menu\Generic Malware.dq\Registration.lnk
File type: Shortcut
Mime Type: unknown/lnk
%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Generic Malware.dq.lnk File name: %UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Generic Malware.dq.lnk
File type: Shortcut
Mime Type: unknown/lnk
%UserProfile%\Desktop\Generic Malware.dq.lnk File name: %UserProfile%\Desktop\Generic Malware.dq.lnk
File type: Shortcut
Mime Type: unknown/lnk
%UserProfile%\Start Menu\Generic Malware.dq\Generic Malware.dq.lnk File name: %UserProfile%\Start Menu\Generic Malware.dq\Generic Malware.dq.lnk
File type: Shortcut
Mime Type: unknown/lnk
%UserProfile%\Start Menu\Generic Malware.dq\Help.lnk File name: %UserProfile%\Start Menu\Generic Malware.dq\Help.lnk
File type: Shortcut
Mime Type: unknown/lnk
%Program Files%\Generic Malware.dq\Generic Malware.dq.exe File name: %Program Files%\Generic Malware.dq\Generic Malware.dq.exe
File type: Executable File
Mime Type: unknown/exe

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "13376694984709702142491016734454"HKEY_CURRENT_USER\Software\13376694984709702142491016734454
Loading...