Worm

Bundpil.Worm.AutoRun.DDS removal

Malware Removal

The Bundpil.Worm.AutoRun.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bundpil.Worm.AutoRun.DDS virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Bundpil.Worm.AutoRun.DDS?


File Info:

name: 8EE42D4D3B0431C9AF55.mlw
path: /opt/CAPEv2/storage/binaries/9bdbefb9cd32056ef5cabba089f88a4560a88b4953110ebc7cedc9761dcfeef8
crc32: 2F434A05
md5: 8ee42d4d3b0431c9af556e4d774d3410
sha1: 58b9a6ac967c17e4d74c9a9fe780c0f7900f73fc
sha256: 9bdbefb9cd32056ef5cabba089f88a4560a88b4953110ebc7cedc9761dcfeef8
sha512: b995ccbfeddbdee021e2f3dc76ed597cb657d101d859d108eddd0cc1c941c1f3972afece3fc0bf8a7334dc92875058c9f082150c36aac831d717ad542762af8b
ssdeep: 192:F5oLc9vKLkcXDpEpyo2hYppAmVHqPtYW2ul:F5mc9vKLkcXDpEpyo2hYppAmVHqPtYWj
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T171D164873A418B11FC13313809760F67879D8CCE71BC8D4764E86C27C7B6C15AA9B96E
sha3_384: e1484948d2d9eb2290e420d0401615d176fdb256cf6424803fa15ad7c0f4f82f8921be2ea3f7d404015ff4f44c8b7b90
ep_bytes: 558bec538b5d08568b750c578b7d1085
timestamp: 2013-06-12 12:49:36

Version Info:

0: [No Data]

Bundpil.Worm.AutoRun.DDS also known as:

BkavW32.FamVT.DebrisA.Worm
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Barys.381598
CAT-QuickHealTrojan.Agent.WL
SkyhighBehavesLike.Win32.Worm.xt
McAfeeW32/Worm-FJV!8EE42D4D3B04
MalwarebytesBundpil.Worm.AutoRun.DDS
ZillyaWorm.DebrisGen.Win32.11
SangforSuspicious.Win32.Save.ins
K7AntiVirusEmailWorm ( 0040f5281 )
K7GWEmailWorm ( 0040f5281 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZedlaF.36680.aq5@ae9rVOn
VirITWorm.Win32.Generic.GRN
SymantecDownloader.Dromedan
Elasticmalicious (high confidence)
ESET-NOD32Win32/Bundpil.AO
APEXMalicious
CynetMalicious (score: 100)
KasperskyWorm.Win32.Debris.b
BitDefenderGen:Variant.Barys.381598
NANO-AntivirusTrojan.Win32.Debris.cqkxyu
SUPERAntiSpywareTrojan.Agent/Gen-Crypt
AvastWin32:Sg-I [Trj]
TencentWorm.Win32.Debris.c
EmsisoftGen:Variant.Barys.381598 (B)
BaiduWin32.Worm.Bundpil.y
F-SecureWorm.WORM/Gamarue.511265
DrWebTrojan.MulDrop4.25343
VIPREGen:Variant.Barys.381598
TrendMicroWORM_GAMARUE.SML
SophosW32/Gamarue-BL
IkarusWorm.Win32.Bundpil
JiangminTrojan/Generic.axdgt
WebrootW32.Worm.Gen
VaristW32/Csyr.B.gen!Eldorado
AviraWORM/Gamarue.511265
Antiy-AVLWorm/Win32.Debris
Kingsoftmalware.kb.a.997
XcitiumWorm.Win32.Bundpil.AH@4yjufs
ArcabitTrojan.Barys.D5D29E
ZoneAlarmWorm.Win32.Debris.b
GDataWin32.Worm.Bundpil.B
GoogleDetected
AhnLab-V3Worm/Win32.Debris.R71328
VBA32Worm.Gamarue
ALYacGen:Variant.Barys.381598
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallWORM_GAMARUE.SML
RisingWorm.Gamarue!1.9CB3 (CLASSIC)
SentinelOneStatic AI – Malicious PE
FortinetW32/Bundpil.AO!tr
AVGWin32:Sg-I [Trj]
DeepInstinctMALICIOUS

How to remove Bundpil.Worm.AutoRun.DDS?

Bundpil.Worm.AutoRun.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment