Home Malware Programs Worms Worm.Hamweq.DA

Worm.Hamweq.DA

Posted: January 14, 2013

Threat Metric

Ranking: 8,728
Threat Level: 5/10
Infected PCs: 1,600
First Seen: January 14, 2013
Last Seen: October 14, 2023
OS(es) Affected: Windows

Aliases

Adware/GoodSearchNow [Panda]Riskware/GenPo [Fortinet]Win-Trojan/Rootkit.5311 [AhnLab-V3]Troj/Agent-HYD [Sophos]Hacktool.Rootkit [Symantec]Suspicious file [Panda]Virus.Win32.Heur [Ikarus]TR/Drop.Clons.wir [AntiVir]Backdoor.Win32.Agent.SPA [Comodo]Trojan-Dropper.Win32.Clons.wir [Kaspersky]Artemis!C6CFFA2347B0 [McAfee](Suspicious) - DNAScan [CAT-QuickHeal]Trj/DataRecovery.A [Panda]Agent3.CKCK [AVG]MSIL/Agent.NUY!tr [Fortinet]
More aliases (79)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Users\<username>\Desktop\MUSIK\100\Downloads\Nouveau dossier\Nouveau dossier (2)\huadio.tmp File name: huadio.tmp
Size: 5.31 KB (5311 bytes)
MD5: 17db4fcbdc84e1d5c4962d6491886755
Detection count: 389
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\Desktop\MUSIK\100\Downloads\Nouveau dossier\Nouveau dossier (2)\huadio.tmp
Group: Malware file
Last Updated: September 24, 2022
C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Templates\spsreng.exe File name: spsreng.exe
Size: 8.19 KB (8192 bytes)
MD5: 39c1190b83310d30218620b3f6fdcc57
Detection count: 159
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Roaming\Microsoft\Windows\Templates\spsreng.exe
Group: Malware file
Last Updated: June 13, 2021
c:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\avi32.exe File name: avi32.exe
Size: 34.81 KB (34816 bytes)
MD5: 94a20398d44e61467abaeeb45fb5c926
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Path: c:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013
Group: Malware file
Last Updated: January 14, 2013
%LOCALAPPDATA%\Nik_Soft\zygxvhco.dll File name: zygxvhco.dll
Size: 745.47 KB (745472 bytes)
MD5: c6cffa2347b05c2fdf63cea5c4a23dc4
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %LOCALAPPDATA%\Nik_Soft
Group: Malware file
Last Updated: January 16, 2013
Loading...