Home Malware Programs Worms Autorun.KG

Autorun.KG

Posted: July 7, 2011

Threat Metric

Threat Level: 5/10
Infected PCs: 63
First Seen: July 7, 2011
Last Seen: November 20, 2019
OS(es) Affected: Windows

Aliases

Generic20.DNW [AVG]W32/Scar.DDNV!tr [Fortinet]Trojan.Win32.StartPage [Ikarus]TR/Cocuk.A [AntiVir]Gen:Variant.Kazy.3373 [BitDefender]Trojan.Win32.Scar.ddnv [Kaspersky]Win32:StartPage-AMB [Avast]a variant of Win32/StartPage.NZJ [NOD32]Artemis!41CDF62CDEB7 [McAfee]Win32.SuspectCrc [Ikarus]Trojan.Fakealert.22105 [DrWeb]Suspicious.MH690.A [Symantec]Worm/Win32.Palevo [AhnLab-V3]Mal/Behav-103 [Sophos]UDS:DangerousObject.Multi.Generic [Kaspersky]
More aliases (120)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\taipingtianguov1.1.exe File name: taipingtianguov1.1.exe
Size: 32.76 KB (32768 bytes)
MD5: 1dddfb419e7a6a8c9b2d6a729516f397
Detection count: 80
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: July 7, 2011
%SystemDrive%\Users\<username>\AppData\Roaming\F842.tmp File name: F842.tmp
Size: 161.28 KB (161280 bytes)
MD5: d03aded32a645c1a91cdc7c0ee7c501e
Detection count: 64
File type: Temporary File
Mime Type: unknown/tmp
Path: %SystemDrive%\Users\<username>\AppData\Roaming
Group: Malware file
Last Updated: July 8, 2011
%TEMP%\aston.exe File name: aston.exe
Size: 16.38 KB (16384 bytes)
MD5: 7d08139eb009395c0b7ae031350cf18b
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: July 11, 2011
C:\RECYCLER\S-1-5-21-0243936033-3052116371-381863308-1811\vsbntlo.exe File name: vsbntlo.exe
Size: 118.78 KB (118784 bytes)
MD5: ff73d423e9efbdef9bb16a2279052d57
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-0243936033-3052116371-381863308-1811
Group: Malware file
Last Updated: July 13, 2011
%USERPROFILE%\Desktop\haek\facebook.exe File name: facebook.exe
Size: 126.97 KB (126976 bytes)
MD5: 77d6be6fc0fefffc21bd97329cd66134
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Desktop\haek
Group: Malware file
Last Updated: November 20, 2019
%APPDATA%\Security Solution\securitymanager.exe File name: securitymanager.exe
Size: 96.76 KB (96768 bytes)
MD5: 33f870901b36ee25d2a58857552b8958
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Security Solution
Group: Malware file
Last Updated: July 18, 2011
%WINDIR%\system32\hidprov.exe File name: hidprov.exe
Size: 1.72 MB (1723486 bytes)
MD5: d6f06bd55e0b3df26ffef8202ac50fcb
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: November 11, 2019
Loading...