Home Malware Programs Worms Nuqel.A

Nuqel.A

Posted: November 30, 2010

Threat Metric

Ranking: 13,236
Threat Level: 5/10
Infected PCs: 2,106
First Seen: November 30, 2010
Last Seen: July 25, 2023
OS(es) Affected: Windows

Aliases

Worm/Autoit.MH [AVG]Malicious Software [Prevx1]W32/Worm!b96b [F-Prot]Win32.Worm.Autorun.WI [BitDefender]Win32.HLLW.Autoruner.6842 [DrWeb]Worm.Win32.AutoRun.fwl [Kaspersky]Win32/Autoit.AJ [NOD32]W32/Autorun.JFD [Panda]Trojan.Crypt [Ikarus]Win32.HLLW.Cung [DrWeb]Heuristic.Trojan.SusPacked.FFXPU [ClamAV]Win32:Trojan-gen [Avast]Win32/Autoit.N [NOD32]Trj/CI.A [Panda]UnclassifiedMalware [Comodo]
More aliases (127)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%USERPROFILE%\Desktop\Yeni klas?r\PES 2012 TR\T?rk?e Yama\Türkçe Yama.exe File name: Türkçe Yama.exe
Size: 399.36 KB (399360 bytes)
MD5: b7b0b90b83f0633c85694d84192d00f1
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Desktop\Yeni klas?r\PES 2012 TR\T?rk?e Yama
Group: Malware file
Last Updated: December 24, 2012
%WINDIR%\system32\RVHOST.exe File name: RVHOST.exe
Size: 399.36 KB (399360 bytes)
MD5: f18011522a7c2007192b00b9a6636fb2
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 1, 2010
C:\Windows\SysWOW64\RVHOST.exe File name: RVHOST.exe
Size: 399.36 KB (399360 bytes)
MD5: 8e65cffa475c84e94b37041896634ec8
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\SysWOW64\RVHOST.exe
Group: Malware file
Last Updated: June 10, 2022
file.exe File name: file.exe
Size: 368.98 KB (368988 bytes)
MD5: bfbe7e71744bbfb3cd7db4d911835b03
Detection count: 20
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
%WINDIR%\system32\RVHOST.exe File name: RVHOST.exe
Size: 632.32 KB (632320 bytes)
MD5: 3956dfc72dbfe55ea128e7aae620e038
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: February 24, 2011
%WINDIR%\system32\RVHOST.exe File name: RVHOST.exe
Size: 268.21 KB (268216 bytes)
MD5: 6763a3f3ee4e7817c48df619dd4ad237
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 11, 2012
%WINDIR%\system32\RVHOST.exe File name: RVHOST.exe
Size: 529.92 KB (529920 bytes)
MD5: c736e9bccf0845e0df15e4dc65054755
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: May 27, 2011
%WINDIR%\system32\RVHOST.exe File name: RVHOST.exe
Size: 268.21 KB (268216 bytes)
MD5: 9f7f54bf01d8575e49c22a4a1619ac29
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 1, 2010
%WINDIR%\system32\RVHOST.exe File name: RVHOST.exe
Size: 632.32 KB (632320 bytes)
MD5: 279ff216a1d4b4dea913cbb397d90c65
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 1, 2010
%WINDIR%\system32\RVHOST.exe File name: RVHOST.exe
Size: 399.36 KB (399360 bytes)
MD5: c23722dc064f29a83fe436c4a343d546
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: April 20, 2011
%WINDIR%\system32\RVHOST.exe File name: RVHOST.exe
Size: 403.45 KB (403456 bytes)
MD5: 5397f90b1a53627665de281bceb229dc
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: June 26, 2020
%WINDIR%\system32\RVHOST.exe File name: RVHOST.exe
Size: 268.21 KB (268216 bytes)
MD5: 9eeb6b34a74040f97ef61e67139fc2a5
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 6, 2010

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%WINDIR%\system32\SSVICHOSST.exe

Related Posts

Loading...