Home / Spyware Encyclopedia / Worm.AutoRun << Back

Recommendation to Automatically remove Worm.AutoRun


Our products can remove Worm.AutoRun and thousands of other Virus and Spyware automatically and instantly.

Worm.AutoRun Details


  • Category Worm
  • Discovered 10/27/2009 10:47:58 PM
  • Modified 4/4/2024 3:11:33 PM
  • Threat Level Critical
  • Category Description
    A Worm is a malicious program that spreads itself without any user intervention. Worms spread without attaching to or infecting other programs and files. A Worm can spread across computer networks via security holes on vulnerable machines connected to the network and also through email by sending copies of itself to everyone in the user's address book. A Worm may consume a large amount of system resources and cause the machine to become noticeably sluggish and unreliable.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
53d678c9.exe 139264www.msn.com1.00.006623e7627c7fee51d7741ac41794238b88 
toolband.dll 214384WWW.CHINARANK.ORG.CN2.0.0.24b86ace270da4ef1804b8661f582a4fe 
toolband.dll 214384www.chinarank.org.cn2.0.0.20d07be5ba97cbaf6b3585c4eafc8088e 
toolband.dll 320880WWW.CHINARANK.ORG.CN2.0.0.20423c551d9a7870922dad00b74b22051 
toolband.dll 249856www.chinarank.org.cn2.0.0.14cb7c7b19d27d96b323313df98bbc24c 
30528359.EXE 155648WWW.77817.CoM1.0.0.0555ad95e1fe17798cf317f7e7f95ee82 
a9a7eedf.exe 53248www.77817.com1.0.0.0062ace157da8c5e823116abb480d7ce2 
1EFD030C.EXE 797720www.218.cc1.1.0.03338b90d2dd148e62fe2c3d0828eadbe 
da644550.exe 24576winsoft technologies1.0.0.09aa6025c153edf620683462b76eae455 
myrvc.exe 24576winsoft technologies1.0.0.09aa6025c153edf620683462b76eae455 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\policies\explorer\run\"dllcache32.exe"\"%win.sys32.dllcache%32.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"app"\"%root%\f53e60ce.exe"
..\System\CurrentControlSet\Enum\root\legacy_icm\(Default)
..\System\CurrentControlSet\Services\icm\(Default)
..\Software\Microsoft\Windows\CurrentVersion\policies\explorer\run\"manager task"\"%root%\recycler\s-1-5-21-1202660629-412668190-725345543-500\smss.exe"
..\Software\Microsoft\Windows\CurrentVersion\policies\explorer\run\"task manager"\"%root%\recycler\s-1-5-21-1202660629-412668190-725345543-500\smss.exe"
..\Software\vb and vba program settings\f-h\(Default)
..\Software\Classes\Clsid\{10020d75-0000-0000-c000-000000000000}\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Explorer\mycomputer\namespace\{10020d75-0000-0000-c000-000000000000}\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Explorer\desktop\namespace\{10020d75-0000-0000-c000-000000000000}\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware