Home Malware Programs Trojans Vundo.gen!G

Vundo.gen!G

Posted: November 30, 2010

Threat Metric

Threat Level: 8/10
Infected PCs: 670
First Seen: November 30, 2010
Last Seen: April 11, 2020
OS(es) Affected: Windows

Aliases

BHO.LYT [AVG]Trojan.Win32.Monder [Ikarus]Win32/Detnat.B [AhnLab-V3]TR/Vundo.Gen3 [AntiVir]Win32:Vundo-IN [Avast]Packed.Vuntid!gen1 [Symantec]a variant of Win32/Kryptik.DNI [NOD32]Cryptic.PW [AVG]ASD.Prevention [AhnLab-V3]TR/ATRAPS.Gen2 [AntiVir]Win32:Vundo-IT [Avast]WS.Reputation.1 [Symantec]a variant of Win32/Kryptik.EHA [NOD32]Generic Trojan [Panda]Trojan.Win32.TDSS.bpyh [Kaspersky]
More aliases (156)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%ALLUSERSPROFILE%\rerutepe\rerutepe.dll File name: rerutepe.dll
Size: 93.18 KB (93184 bytes)
MD5: 1e8b62b529c825bbcf70fd1f96d7e31f
Detection count: 87
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ALLUSERSPROFILE%\rerutepe
Group: Malware file
Last Updated: November 30, 2010
%WINDIR%\system32\doripunu.dll File name: doripunu.dll
Size: 96.25 KB (96256 bytes)
MD5: f537e51872d91c397b15834300ec9a05
Detection count: 75
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 6, 2010
%WINDIR%\system32\bulopazo.dll File name: bulopazo.dll
Size: 100.35 KB (100352 bytes)
MD5: bfeee1dbc20e2b913bf159e1ce162dae
Detection count: 74
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\dakotari.dll File name: dakotari.dll
Size: 97.28 KB (97280 bytes)
MD5: a4f0ca904ed813cc0c8530a04ec7bb22
Detection count: 73
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 8, 2010
%WINDIR%\system32\kazarige.dll File name: kazarige.dll
Size: 97.28 KB (97280 bytes)
MD5: e117a71a0d2173ca76432b1d9b315965
Detection count: 65
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: July 5, 2012
%WINDIR%\system32\litilifu.dll File name: litilifu.dll
Size: 96.76 KB (96768 bytes)
MD5: 71f9aae0b389a977512ca131c50268d8
Detection count: 63
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\vujapede.dll File name: vujapede.dll
Size: 96.76 KB (96768 bytes)
MD5: af5a02afe19f0a2b33ea289caf62a9cb
Detection count: 61
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 7, 2010
%APPDATA%\GabPath\gabpath.exe File name: gabpath.exe
Size: 1.13 MB (1130496 bytes)
MD5: 7100bceea4c5e339a55d1e397854512a
Detection count: 51
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\GabPath
Group: Malware file
Last Updated: December 1, 2010
%APPDATA%\Agence Exclusive\Update\UpdateHP.exe File name: UpdateHP.exe
Size: 491.52 KB (491520 bytes)
MD5: 873372026ab74a43a6903dde22408407
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Agence Exclusive\Update
Group: Malware file
Last Updated: December 1, 2010
%WINDIR%\system32\pbesv2.dll File name: pbesv2.dll
Size: 820.73 KB (820736 bytes)
MD5: 201f5d3746412b35bb6990241ac8c440
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: April 11, 2020
%WINDIR%\system32\vogujesi.dll File name: vogujesi.dll
Size: 96.76 KB (96768 bytes)
MD5: 4fe91cf3862ac3c2910cab2f2ada1456
Detection count: 6
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 9, 2010
%WINDIR%\system32\vekuwupe.dll File name: vekuwupe.dll
Size: 96.76 KB (96768 bytes)
MD5: 6f808e923749d79e4c1c2fbb321072c4
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 7, 2010
%WINDIR%\system32\yetugayu.dll File name: yetugayu.dll
Size: 96.76 KB (96768 bytes)
MD5: bf1fa380f01e2fadb09399d79fc80ae7
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 8, 2010
%WINDIR%\system32\jopisado.dll File name: jopisado.dll
Size: 97.28 KB (97280 bytes)
MD5: 70ea9933bc7147c3d260341a60266eda
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: February 1, 2011
Loading...