Home Malware Programs Worms Renocide.gen!H

Renocide.gen!H

Posted: August 12, 2011

Threat Metric

Threat Level: 5/10
Infected PCs: 492
First Seen: August 12, 2011
Last Seen: December 12, 2022
OS(es) Affected: Windows

Aliases

W32/Autoit.HQ [Panda]Worm/AutoIt.xl.146 [AntiVir]AutoIt:Balero-E [Avast]Artemis!060733F19E07 [McAfee]Worm.Renocide.h [CAT-QuickHeal]Agent3.AILY [AVG]W32/Agent.BTOH!tr [Fortinet]Trojan/Win32.HDC [AhnLab-V3]Mal/WOWPWS-D [Sophos]TR/Spy.Agent.btoh [AntiVir]Trojan.PWS.Wow.2074 [DrWeb]Trojan-Spy.Win32.Agent.btoh [Kaspersky]Generic PWS.y!dnl [McAfee]Trojan-Spy.Win32.Agent [Ikarus]Trojan/Win32.OnlineGameHack [AhnLab-V3]
More aliases (118)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\AcroIEHelpe035.dll File name: AcroIEHelpe035.dll
Size: 207.82 KB (207824 bytes)
MD5: 49d4e66055c59534a574a2af0d7af86f
Detection count: 304
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: August 15, 2011
%TEMP%\MS2011Helper.DLL File name: MS2011Helper.DLL
Size: 143.36 KB (143360 bytes)
MD5: 52da8d7a8d8f88da53899e7703478974
Detection count: 45
File type: Dynamic link library
Mime Type: unknown/DLL
Path: %TEMP%
Group: Malware file
Last Updated: September 13, 2011
C:\Users\<username>\Desktop\Programmi\Nero\Nero Burning ROM.exe File name: Nero Burning ROM.exe
Size: 560.39 KB (560391 bytes)
MD5: 6bdf2e0cd33f4b75a2fccb85719b57b2
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Desktop\Programmi\Nero\Nero Burning ROM.exe
Group: Malware file
Last Updated: December 12, 2022
%WINDIR%\system32\Iasex.dll File name: Iasex.dll
Size: 73.72 KB (73728 bytes)
MD5: 20b6d5718f04840f92d8de4dbe2abac0
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: August 18, 2011
%WINDIR%\system32\csrcs.exe File name: csrcs.exe
Size: 940.73 KB (940738 bytes)
MD5: 060733f19e07fb358478d20623477160
Detection count: 12
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: April 17, 2012
%SystemDrive%\Documents and Settings\NetworkService\Configuraci??n local\Datos de programa\NVIDIA Corporation\Update\daemonupd.exe File name: daemonupd.exe
Size: 19.96 KB (19968 bytes)
MD5: 0930d462d2b9d15aa1a723e51fb706a0
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %SystemDrive%\Documents and Settings\NetworkService\Configuraci??n local\Datos de programa\NVIDIA Corporation\Update
Group: Malware file
Last Updated: August 15, 2011
%WINDIR%\system32\csrcs.exe File name: csrcs.exe
Size: 940.74 KB (940744 bytes)
MD5: 1c9974b2117234dd4b85302077fba9a0
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: August 12, 2011
C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-8651\s523lsword.exe File name: s523lsword.exe
Size: 45.05 KB (45056 bytes)
MD5: 8edacd69f1a10d95240eaa2924c15597
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-8651
Group: Malware file
Last Updated: August 16, 2011
Loading...