DuduAccelerator description
Also known as:
[Kaspersky]Trojan-Dropper.Win32.Agent.xz;
[McAfee]Downloader-AW
Categories:Adware The DuduAccelerator adds a link to its executable file in the system registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
[%DESKTOP%]\remotesetup.exe
[%PROFILE_TEMP%]\dddsetup.exe Platforms / OS: Windows 2000, Windows XP, Windows 2003, Windows Vista
How to detecting DuduAccelerator:
Search Files on the disk:
[%WINDOWS%]\Downloaded Installations\{23710A32-F648-42F4-8E67-29F800D6A4A1}\1033.MST
[%WINDOWS%]\Downloaded Installations\{23710A32-F648-42F4-8E67-29F800D6A4A1}\DuDu Speed.msi
[%COMMON_DESKTOPDIRECTORY%]\DuDu Speed.lnk
[%COMMON_STARTUP%]\DuDu Speed.lnk
[%DESKTOP%]\remotesetup.exe
[%PROFILE%]\Recent\dddspocx.lnk
[%PROFILE_TEMP%]\dddsetup.exe
[%WINDOWS%]\Downloaded Installations\{23710A32-F648-42F4-8E67-29F800D6A4A1}\1033.MST
[%WINDOWS%]\Downloaded Installations\{23710A32-F648-42F4-8E67-29F800D6A4A1}\DuDu Speed.msi
[%COMMON_DESKTOPDIRECTORY%]\DuDu Speed.lnk
[%COMMON_STARTUP%]\DuDu Speed.lnk
[%DESKTOP%]\remotesetup.exe
[%PROFILE%]\Recent\dddspocx.lnk
[%PROFILE_TEMP%]\dddsetup.exe
Search Folders on the disk:
[%APPDATA%]\DuDu
[%COMMON_PROGRAMS%]\DuDu Speed
[%PROGRAM_FILES%]\DuDu
Search registry keys in system registry:
HKEY_CLASSES_ROOT\.dd!\ddd.dd!
HKEY_CLASSES_ROOT\ddd.dd!
HKEY_CLASSES_ROOT\mime\database\content type\application\x-ddd
HKEY_LOCAL_MACHINE\software\dudu
HKEY_CLASSES_ROOT\clsid\{00018593-c6bd-46f7-9349-dba1aa674c90}
HKEY_CLASSES_ROOT\clsid\{6bde1669-b490-48e3-b668-456314f2d6c3}
HKEY_CLASSES_ROOT\clsid\{915e63f4-4733-401e-8556-6559b30a4c5a}
HKEY_CLASSES_ROOT\clsid\{93f643d6-4cc8-4aa7-990f-f82c13e24373}
HKEY_CLASSES_ROOT\clsid\{c572fb5d-9c65-47fd-899a-1166c90b8136}
HKEY_CLASSES_ROOT\clsid\{ffd95f65-f5e4-4ab8-b7f9-f61f13878a04}
HKEY_CLASSES_ROOT\dddiemon.customdl
HKEY_CLASSES_ROOT\dddiemon.customdl.1
HKEY_CLASSES_ROOT\dddiemon.customdownloadmgr
HKEY_CLASSES_ROOT\dddiemon.customdownloadmgr.1
HKEY_CLASSES_ROOT\dddiemon.dddmon
HKEY_CLASSES_ROOT\dddiemon.dddmon.1
HKEY_CLASSES_ROOT\dddiemon.dddmont
HKEY_CLASSES_ROOT\dddiemon.dddmont.1
HKEY_CLASSES_ROOT\dddmext.dlmgr
HKEY_CLASSES_ROOT\dddmext.dlmgr.1
HKEY_CLASSES_ROOT\installer\features\3084c4b986a154d49bccd7f9b97fba7e
HKEY_CLASSES_ROOT\installer\products\3084c4b986a154d49bccd7f9b97fba7e
HKEY_CLASSES_ROOT\interface\{1bbfa226-6a38-4b6b-80c2-35b829773c2e}
HKEY_CLASSES_ROOT\interface\{2f3482f8-819f-49bc-a272-c91fe2605f45}
HKEY_CLASSES_ROOT\interface\{7b242faa-d828-4492-8223-b543f17df940}
HKEY_CLASSES_ROOT\interface\{8cd1fee0-45ca-4bb0-a9d7-a353c7823226}
HKEY_CLASSES_ROOT\interface\{a678febf-7787-448e-955b-7be5a29f1002}
HKEY_CLASSES_ROOT\typelib\{2e59452c-8826-43a2-b28a-927bff705bf9}
HKEY_CLASSES_ROOT\typelib\{49bd048a-3eba-4234-a408-df92ad121fd8}
HKEY_CLASSES_ROOT\typelib\{e984b17c-7fae-4e2b-8d80-e1c9ea96b0cb}
HKEY_CURRENT_USER\software\microsoft\internet explorer\menuext\&detect video by dudu
HKEY_CURRENT_USER\software\microsoft\internet explorer\menuext\&download all by dudu
HKEY_CURRENT_USER\software\microsoft\internet explorer\menuext\&download by dudu
HKEY_CURRENT_USER\software\microsoft\internet explorer\menuext\&download selection by dudu
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{00018593-c6bd-46f7-9349-dba1aa674c90}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\uninstall\{9b4c4803-1a68-4d45-b9cc-7d9f9bf7abe7}
Search registry values in system registry:
HKEY_CLASSES_ROOT\installer\upgradecodes\1b6e6a7925ff6484380f73cc3a32b617
HKEY_CURRENT_USER\software\microsoft\internet explorer
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\folders
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\installer\upgradecodes\1b6e6a7925ff6484380f73cc3a32b617
How To Remove DuduAccelerator:
You must download ExterminateIt. It can detect DuduAccelerator and prevent infection.
You can run trial version of ExterminateIt to detect,and then remove DuduAccelerator manually.
- Use Task Manager to terminate the DuduAccelerator process.
- Delete the original DuduAccelerator file and folders.
- Delete the system registry key parameters
Note that the easiest way is to buy antivirus software and be protected 24/7/365
This antivirus, ExterminateIt effectively and automatically removes viruses from you computer.
Download ExterminateIt! to instantly get rid of DuduAccelerator!
Check now if your PC is infected with DuduAccelerator
You can buy full version of ExterminateIt at RegNow.com.
Also Be Aware of the Following Threats:
mixmarket.biz Tracking Cookie Removal