Home / Spyware Encyclopedia / Worm.autorun.gjm << Back

Recommendation to Automatically remove Worm.autorun.gjm


Our products can remove Worm.autorun.gjm and thousands of other Virus and Spyware automatically and instantly.

Worm.autorun.gjm Details


  • Category Worm
  • Discovered 2/15/2011 3:54:24 PM
  • Modified 4/8/2024 6:13:54 PM
  • Threat Level High
  • Category Description
    A Worm is a malicious program that spreads itself without any user intervention. Worms spread without attaching to or infecting other programs and files. A Worm can spread across computer networks via security holes on vulnerable machines connected to the network and also through email by sending copies of itself to everyone in the user's address book. A Worm may consume a large amount of system resources and cause the machine to become noticeably sluggish and unreliable.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
msa.exe 182784  f41eb5d19839e408927d534571bb5460 
1335FA24.EXE 128000  9849ed9c6f1383096b7deaec73aa445d 
bfemoq.exe 188928  17fe0590cbdd5a9d6fc51993ac8ad8ef 
admin.exe 128000 1.0.0.0fa8395ba02d7e790e6a17fade5302e3f 
admin.exe 128000 1.0.0.0fa375339375768aa94265b538064e987 
d60690d3.exe 128000 1.0.0.0f04788d99c4083d14fe68b80ef66529b 
b1f10af3.exe 128000 1.0.0.0de4a06c2d907d11f47c7e6fc462e3d98 
d454d871.exe 128000 1.0.0.0b8920d50096f3c589c04013149ea92e4 
admin.exe 128000 1.0.0.0a3416b0552fc6eb7c08de6bb56a7b97b 
admin.exe 128000 1.0.0.06fdbe6e4701c6438d2354a3b2f708b6c 

The following Registry Entries were created:
..\Software\zagrebland\(Default)
..\Software\videocan\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"videohost"\"%das.au.ls%\temp\c.exe"
..\Software\ovesazel\(Default)
..\Software\videohost\(Default)
..\System\CurrentControlSet\Enum\root\legacy_sshnas\(Default)
..\Software\Microsoft\handle\(Default)
..\System\CurrentControlSet\Services\sshnas\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"minisoft"\"%das.au.ls%\temp\msa.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"admin"\"%das.au%\admin.exe"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware