Threat Database Worms Generic.dx!sve

Generic.dx!sve

By GoldSparrow in Worms

Generic.dx!sve is a dangerous computer worm. Generic.dx!sve propagates by copying itself into removable media that is connected to the infected PC. Generic.dx!sve will create an "autorun.inf" file in all the removable devices it infects to ensure that it executes whenever the devices are connected to another system. Generic.dx!sve may deteriorate the performance of an infected PC therefore it should be removed upon detection.

File System Details

Generic.dx!sve may create the following file(s):
# File Name Detections
1. [Removable Drive]:\SYSTEM\S-1-5-(Varies)\system.exe
2. %SystemDrive%\SYSTEM\S-1-5-(Varies)\system.exe
3. [Removable Drive]:\autorun.inf
4. [Removable Drive]:\SYSTEM
5. [Removable Drive]:\SYSTEM\S-1-5-(Varies)\Desktop.ini
6. %SystemDrive%\SYSTEM\S-1-5-(Varies)
7. %SystemDrive%\SYSTEM\S-1-5-(Varies)\Desktop.ini
8. %SystemDrive%\SYSTEM
9. [Removable Drive]:\SYSTEM\S-1-5-(Varies

Registry Details

Generic.dx!sve may create the following registry entry or registry entries:
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{28ABC5C0-4FCB-11CF-AAX5-21CX1C643131}\] "StubPath"= "%SystemDrive%\SYSTEM\S-1-5-(Varies)\system.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{28ABC5C0-4FCB-11CF-AAX5-21CX1C643131}

Trending

Most Viewed

Loading...