Home / Spyware Encyclopedia / Worm.autorun.atoh << Back

Recommendation to Automatically remove Worm.autorun.atoh


Our products can remove Worm.autorun.atoh and thousands of other Virus and Spyware automatically and instantly.

Worm.autorun.atoh Details


  • Category Worm
  • Discovered 2/25/2020 12:24:30 PM
  • Modified 2/25/2020 3:57:41 PM
  • Threat Level Medium
  • Category Description
    A Worm is a malicious program that spreads itself without any user intervention. Worms spread without attaching to or infecting other programs and files. A Worm can spread across computer networks via security holes on vulnerable machines connected to the network and also through email by sending copies of itself to everyone in the user's address book. A Worm may consume a large amount of system resources and cause the machine to become noticeably sluggish and unreliable.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
6a7bf8f3b843a8040e8c896821bc8499.exe 131416  6a7bf8f3b843a8040e8c896821bc849921/07/2023
update.exe 53899  15b3afc558c3e4f558d92589e99629ff21/07/2023
73e82288.exe 53899  15b3afc558c3e4f558d92589e99629ff21/07/2023
7330f43dafb913eba54cb0d709c19560.vir.exe 125579  7330f43dafb913eba54cb0d709c1956021/07/2023
update.exe 53899  15b3afc558c3e4f558d92589e99629ff 
73e82288.exe 53899  15b3afc558c3e4f558d92589e99629ff 
e129ba47.exe 53899  7f2eb71692b95537084a1cbd243e7588 
update.exe 53899  7f2eb71692b95537084a1cbd243e7588 

The following Registry Entries were created:
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\ravstub.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\360upp.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ÐÞ¸´¹¤¾ß.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\"Debugger"\"ntsd -d"
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\xnlscn.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vcrmon.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vcr32.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\spbbcsvc.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sndsrvc.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\secnotifier.exe\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware