Home / Spyware Encyclopedia / Worm.autorun.bbki << Back

Recommendation to Automatically remove Worm.autorun.bbki


Our products can remove Worm.autorun.bbki and thousands of other Virus and Spyware automatically and instantly.

Worm.autorun.bbki Details


  • Category Worm
  • Discovered 1/22/2010 1:21:19 PM
  • Modified 8/3/2023 5:31:27 PM
  • Threat Level High
  • Category Description
    A Worm is a malicious program that spreads itself without any user intervention. Worms spread without attaching to or infecting other programs and files. A Worm can spread across computer networks via security holes on vulnerable machines connected to the network and also through email by sending copies of itself to everyone in the user's address book. A Worm may consume a large amount of system resources and cause the machine to become noticeably sluggish and unreliable.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
winsys.dll 163840Hello Loons.Fad2. 3, 0, 241b395d979b737617f90d7a1149e0f9d 
0b0dc333.exe 24444Beijing Rising Information Technology Co., Ltd.21, 0, 0, 57b1e75d8d4007d41a5f808f2fc30ac57 
ygzg.pif 24444Beijing Rising Information Technology Co., Ltd.21, 0, 0, 57b1e75d8d4007d41a5f808f2fc30ac57 
iexplo.exe 22016360安全2, 4, 2, 1031bdd2cfa10e7a42da986b80321919dc2 
cpush0.dll 204800 1.1.7.063297e4701e29267522a760299d37232 
cpush.dll 204800 1.1.6.893f997346b8e515a14c66ad11bbb8744 
~my1.tmp 139264  e71f157b0a21777496d919d9496b1da0 
tencnet.exe 11776  501e07ce219b2f9d8c7a203eddd61a99 
360traj.exe 13531  ca42539e85a7f9bb372da8124f7a325403/08/2023
tencnet.exe 11776  501e07ce219b2f9d8c7a203eddd61a9908/08/2023

The following Registry Entries were created:
..\System\CurrentControlSet\Enum\root\legacy_hcpidesk\(Default)
..\System\CurrentControlSet\Services\hcpidesk\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\arpfw.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\krnl360svc.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\360rp.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\zhudongfangyu.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\360sd.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\arswp.exe\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\image file execution options\ravstub.exe\(Default)
..\Software\Classes\Interface\{dc95fdf7-6b69-46f9-8f67-61f2a1d9030e}\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware