Home / Spyware Encyclopedia / Worm.autorun.batm << Back

Recommendation to Automatically remove Worm.autorun.batm


Our products can remove Worm.autorun.batm and thousands of other Virus and Spyware automatically and instantly.

Worm.autorun.batm Details


  • Category Worm
  • Discovered 12/15/2009 1:00:07 PM
  • Modified 8/3/2023 5:31:27 PM
  • Threat Level Critical
  • Category Description
    A Worm is a malicious program that spreads itself without any user intervention. Worms spread without attaching to or infecting other programs and files. A Worm can spread across computer networks via security holes on vulnerable machines connected to the network and also through email by sending copies of itself to everyone in the user's address book. A Worm may consume a large amount of system resources and cause the machine to become noticeably sluggish and unreliable.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
ss12c40088dll.dll 996864  633a0e5cf6508b15f365c6c515928374 
syttem.exe 11776  501e07ce219b2f9d8c7a203eddd61a9908/08/2023
360trag.exe 13531  ca42539e85a7f9bb372da8124f7a325403/08/2023
syttem.exe 11776  501e07ce219b2f9d8c7a203eddd61a99 
vgaf.dat 13100  76a4d3108e6cd9fbcda1379031dd4786 
vgac.dat 13100  76a4d3108e6cd9fbcda1379031dd4786 
msar12c40088exe.ttf 16544  a8415a4c81258b37831dbfd320529523 
cpush.dll 200704 1.1.4.8c1f37ad3a13431bd607cf8037af78d7a 
iexplo.exe 21504360安全2, 4, 2, 103ddfcfce0b1b3478b755388eefa5fbb92 
ze.pif 24800Beijing Rising Information Technology Co., Ltd.21, 0, 0, 58cbf5ecef3283815acd22a33ba895aa5 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\"170375"\"{5a041f13-a111-12b0-b0cf-f99818aa68a5}"
..\System\CurrentControlSet\Enum\root\legacy_duomi\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\arpfw.exe\(Default)
..\System\CurrentControlSet\Services\duomi\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\krnl360svc.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\360rp.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\zhudongfangyu.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\360sd.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\arswp.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\ravstub.exe\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware