Home / Spyware Encyclopedia / Worm.AutoRun.aaj << Back

Recommendation to Automatically remove Worm.AutoRun.aaj


Our products can remove Worm.AutoRun.aaj and thousands of other Virus and Spyware automatically and instantly.

Worm.AutoRun.aaj Details


  • Category Worm
  • Discovered 5/26/2014 8:44:47 PM
  • Modified 7/29/2023 3:39:07 PM
  • Threat Level Medium
  • Category Description
    A Worm is a malicious program that spreads itself without any user intervention. Worms spread without attaching to or infecting other programs and files. A Worm can spread across computer networks via security holes on vulnerable machines connected to the network and also through email by sending copies of itself to everyone in the user's address book. A Worm may consume a large amount of system resources and cause the machine to become noticeably sluggish and unreliable.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
E336BCCD.EXE 77824 1.02.0118498219f749609fdc0765de3576a91225 
f7427c56de5df5977bede6c7d9b4f78c.vxe.exe 77824 1.02.0118687aa2681af0add22bb8635ce41a0400 
1436644e20b9b81aad51630560a1cd40.exe 110592 1.02.01181436644e20b9b81aad51630560a1cd4029/07/2023
af06d3df5d686e7aa1db3e0dcb0fa25ea99f4915.bin.exe 143360  9693cdaca78090dfce3d6f2ddb60f4d305/05/2023
d40b8c4b52688df99449af5ad9118542.vxe.exe 77824 1.02.01187dd3b80e2c06dee87fb6e4e33709640127/12/2022
b44f2fda27d689584090c55ff7de3691833180113e43fd447a6c8be7a4de4781.exe 77824  1e9df1fe6b5d48f78c00803c02ae83df04/08/2022
E336BCCD.EXE 77824 1.2.0.118498219f749609fdc0765de3576a9122524/06/2022
services.exe 77824 1.2.0.118498219f749609fdc0765de3576a9122524/06/2022
admin.exe 77824 1.2.0.118498219f749609fdc0765de3576a9122524/06/2022
smss.exe 77824 1.2.0.118498219f749609fdc0765de3576a9122524/06/2022

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"SYSTEM"\"%WIN%\TEMP\Tmp.com"
..\System\CurrentControlSet\Services\MsNet\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"RISHI"\"%WIN%\win.pif"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"admin"\"%DAS%\admin\Local Settings\Temp\Tmp.com"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware