Home Malware Programs Backdoors Net-Worm.Demo

Net-Worm.Demo

Posted: June 1, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 12,319
First Seen: July 24, 2009
Last Seen: November 22, 2021
OS(es) Affected: Windows

Net-Worm.Demo is a malicious Trojan that may represent security risk for the compromised system or its network environment. Net-Worm.Demo runs in the background and allows remote access to the compromised system. Terminate Net-Worm.Demo immediately once detected.

Aliases

W32/Devall.A.worm [Panda]BackDoor.Generic5.YHY [AVG]W32/BDoor.AWS!tr.bdr [Fortinet]Trojan-Dropper.Delf [Ikarus]Heuristic.LooksLike.Win32.Suspicious.C!87 [McAfee-GW-Edition]Backdoor.Generic.261241 [BitDefender]Backdoor.Win32.Delf.mhq [Kaspersky]Trojan.PcClient-2361 [ClamAV]Win32:Rootkit-gen [Rtk] [Avast]Trojan Horse [Symantec]W32/Backdoor.BRDD [F-Prot]Win32/Delf.AWS [NOD32]Backdoor [K7AntiVirus]Win32.PWS.Hupigon.ADE.3 [CAT-QuickHeal]Trojan.Win32.Generic!BT [Sunbelt]
More aliases (89)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\Adobe\Taskil\taskil.exe File name: taskil.exe
Size: 343.55 KB (343552 bytes)
MD5: 87673670bbf24304d456a8a6b25dde1d
Detection count: 4,647
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Adobe\Taskil
Group: Malware file
Last Updated: November 22, 2019
%ALLUSERSPROFILE%\Adobe\Taskil\taskil.exe File name: taskil.exe
Size: 343.55 KB (343552 bytes)
MD5: fc0bd1b11b7fcfab41734e9f30e72520
Detection count: 1,672
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Adobe\Taskil
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\Adobe\Taskil\taskil.exe File name: taskil.exe
Size: 120.83 KB (120832 bytes)
MD5: 54c0a817459a8068192f474b949bf630
Detection count: 1,492
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Adobe\Taskil
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\Application Data\Adobe\Taskil\Taskil.exe File name: Taskil.exe
Size: 379.9 KB (379904 bytes)
MD5: 71c4912749892f888e1f7667c77cc746
Detection count: 817
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Application Data\Adobe\Taskil
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\Adobe\Taskil\taskil.exe File name: taskil.exe
Size: 341.5 KB (341504 bytes)
MD5: be9937bf6b60c3099ac6c6ddb9d3686a
Detection count: 525
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Adobe\Taskil
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\Adobe\Taskil\taskil.exe File name: taskil.exe
Size: 341.5 KB (341504 bytes)
MD5: 46ea17e4d7166af424216bed48e3cffe
Detection count: 265
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Adobe\Taskil
Group: Malware file
Last Updated: March 22, 2016
%ALLUSERSPROFILE%\Keross.exe File name: Keross.exe
Size: 2.65 MB (2657901 bytes)
MD5: 193cfe882b55912188e8ca02a86449ee
Detection count: 117
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Keross.exe
Group: Malware file
Last Updated: June 26, 2020
%ALLUSERSPROFILE%\Kero.exe File name: Kero.exe
Size: 2.66 MB (2664419 bytes)
MD5: bc2afddf1473507b2d5702af6b62cf35
Detection count: 103
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Kero.exe
Group: Malware file
Last Updated: June 26, 2020
%ALLUSERSPROFILE%\Nires.exe File name: Nires.exe
Size: 2.58 MB (2581518 bytes)
MD5: 049227da04081d1f77ab5e1bf133a884
Detection count: 94
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Nires.exe
Group: Malware file
Last Updated: January 16, 2021
systemntfy.exe File name: systemntfy.exe
Size: 303.1 KB (303104 bytes)
MD5: 8771b19808f10c584e4afb2090ff42fc
Detection count: 22
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: May 18, 2010

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%ALLUSERSPROFILE%\Kent.exe
Loading...