Home Malware Programs Worms Worm.Duptwux.A

Worm.Duptwux.A

Posted: January 4, 2012

Threat Metric

Threat Level: 5/10
Infected PCs: 1,260
First Seen: December 7, 2011
Last Seen: February 25, 2022
OS(es) Affected: Windows

Worm.Duptwux.A is a malignant self-replicating worm that will circulate from one PC to another without any user's interaction being required. Worm.Duptwux.A copies itself usually through removable or network drives, or by attempting to exploit certain vulnerabilities in its affected computers' security. Worm.Duptwux.A will also attempt to replicate itself through platforms that require a PC user's interaction to run. This is done by sending itself as an attachment to an instant or email message, or by sending a web-link to in the body of an email message. It will make the email or instant message look persuading, and will in that way succeed in misleading the user to download the attachment or click on the link. When the user does this, Worm.Duptwux.A will be executed and his/her PC will be compromised. Worm.Duptwux.A will execute all of its malicious tasks in the system's background, which means that is difficult to detect and remove Worm.Duptwux.A. It is recommended to use a powerful and reputable anti-malware tool to completely uninstall Worm.Duptwux.A.

Aliases

Artemis!7D91DE955172 [McAfee]Generic26.BWFI [AVG]Win32:FakeRean [Trj] [Avast]Win32:Ufraie-M [GData]Trojan.Fakealert.20245 [DrWeb]Win32:Ufraie-M [Trj] [Avast]Win32/Adware.DesktopDefender2010.AG [NOD32]Win32/FakeAV.AY!generic [eTrust-Vet]TR/Crypt.ZPACK.Gen2 [AntiVir]FakeAlert-Rena.bs [McAfee]Artemis!5FE96A19D969 [McAfee-GW-Edition]Trojan.Generic.KDV.498014 [BitDefender]Trojan.Win32.FakeAV.jruv [Kaspersky]Trojan.Agent.ATPY [BitDefender]a variant of Win32/Kryptik.YGY [NOD32]
More aliases (450)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\USB3Nw32.dll File name: USB3Nw32.dll
Size: 37.88 KB (37888 bytes)
MD5: 2c0600ec51cdbe2e646cf8cf446a2841
Detection count: 115
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Local Settings\Application Data\ewy.exe File name: ewy.exe
Size: 291.84 KB (291840 bytes)
MD5: c68ed537d51bdb718bbc42cf0cd9e8f4
Detection count: 86
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 10, 2012
USB3Nw32.dll File name: USB3Nw32.dll
Size: 37.88 KB (37888 bytes)
MD5: 196f74d9e3245b6870102d39785e7a92
Detection count: 84
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Local Settings\Application Data\sdq.exe File name: sdq.exe
Size: 274.43 KB (274432 bytes)
MD5: b7ecca52f64c441705668b5a5aa6937b
Detection count: 36
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Local Settings\Application Data\hot.exe File name: hot.exe
Size: 402.43 KB (402432 bytes)
MD5: d5fbcd5afd9e4400dd9b9b2f10027068
Detection count: 25
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Local Settings\Application Data\rsu.exe File name: rsu.exe
Size: 346.62 KB (346624 bytes)
MD5: 5fe96a19d969ee8c15d2710142375d25
Detection count: 24
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 16, 2012
%PROGRAMFILES(x86)%\LP\CB28\FD0.exe File name: FD0.exe
Size: 294.4 KB (294400 bytes)
MD5: 55b6c6a48cbcbe444e3356dbbdd76bf2
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\LP\CB28
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Application Data\isecurity.exe File name: isecurity.exe
Size: 824.32 KB (824320 bytes)
MD5: aa1febc01dc475922e41ea10cdf76631
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Application Data
Group: Malware file
Last Updated: January 23, 2012
%WINDIR%\System32\drivers\afd.sys File name: afd.sys
Size: 138.49 KB (138496 bytes)
MD5: 3026669a090dbbcd8214388ee1a3b70d
Detection count: 16
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: January 11, 2012
%WINDIR%\System32\drivers\mrxsmb.sys File name: mrxsmb.sys
Size: 456.32 KB (456320 bytes)
MD5: 223a6c7b8803e46f621e8945aaf8f013
Detection count: 12
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: January 11, 2012
%APPDATA%\A4553\F3DBA.exe File name: F3DBA.exe
Size: 198.14 KB (198144 bytes)
MD5: c38e1f3713739d9e15065d81fde8be95
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\A4553
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Local Settings\Application Data\10b0526c\X File name: X
Size: 56.83 KB (56832 bytes)
MD5: 841a4242aa398154dff2a99b49f3be65
Detection count: 9
Path: %USERPROFILE%\Local Settings\Application Data\10b0526c
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Local Settings\Application Data\oit.exe File name: oit.exe
Size: 344.06 KB (344064 bytes)
MD5: 6bbc00122eda1f6439a2a3ea13866841
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Local Settings\Application Data\uww.exe File name: uww.exe
Size: 321.53 KB (321536 bytes)
MD5: 4cfa5e41a87eadea133ba70a811b20cd
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 10, 2012
%APPDATA%\80812\213CB.exe File name: 213CB.exe
Size: 177.15 KB (177152 bytes)
MD5: ae42e8620c6061ddc7e72ba0e1ce6277
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\80812
Group: Malware file
Last Updated: January 10, 2012
%USERPROFILE%\Local Settings\Application Data\cro.exe File name: cro.exe
Size: 277.5 KB (277504 bytes)
MD5: da718fda683fb78c7f108676fbca167e
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Local Settings\Application Data
Group: Malware file
Last Updated: January 10, 2012
%APPDATA%\16F7D\8A477.exe File name: 8A477.exe
Size: 180.73 KB (180736 bytes)
MD5: 073520d94a66c2d451fafa56b3c52aca
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\16F7D
Group: Malware file
Last Updated: January 10, 2012
48829.exe File name: 48829.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
00001.exe File name: 00001.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
clhost.exe File name: clhost.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
U0OGCY6AvSMGl4.exe File name: U0OGCY6AvSMGl4.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Win Dir.exe File name: Win Dir.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
_ex-68.exe File name: _ex-68.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
soy.exe File name: soy.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
privacy.exe File name: privacy.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
dmp.exe File name: dmp.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
BVnMMdPUIl.exe File name: BVnMMdPUIl.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
bLSzoe0oEEW11o.exe File name: bLSzoe0oEEW11o.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
FNFPDoJienHIJQ.exe File name: FNFPDoJienHIJQ.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Alcohol.exe File name: Alcohol.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
%WINDIR%\system32\config\systemprofile\Local Settings\Application Data\wbg.exe File name: wbg.exe
Size: 290.3 KB (290304 bytes)
MD5: 02526ab361d2c1cf266eafb633d9bf53
Detection count: 0
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32\config\systemprofile\Local Settings\Application Data
Group: Malware file
Last Updated: January 10, 2012

More files
Loading...