Home Malware Programs Worms Autorun.YF

Autorun.YF

Posted: March 3, 2011

Threat Metric

Threat Level: 5/10
Infected PCs: 492
First Seen: March 3, 2011
Last Seen: February 7, 2023
OS(es) Affected: Windows

Aliases

W32/Autorun.JNJ [Panda]Win32/Autorun.worm.283773 [AhnLab-V3]Worm/Autorun.wka [AntiVir]Win32.HLLW.Autoruner.55089 [DrWeb]W32/AutoIt-OC [Sophos]Worm.Generic.323155 [BitDefender]IM-Worm.Win32.Sohanad.gen [Kaspersky]AutoIt:AutoRun-A2 [Wrm] [Avast]W32/Trojan1.BNU [F-Prot]Win32/AutoRun.Autoit.DZ [NOD32]Artemis!5D105B97DC75 [McAfee]Backdoor.Win32.Bifrose [Ikarus]PAK_Generic.009 [TrendMicro]Heur.Pck.Enigma [Comodo]W32/Heuristic-210!Eldorado [F-Prot]
More aliases (165)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



F:\$RECYCLE.BIN\S-1-5-21-2418101895-765892343-1215472340-1001\$RQNAVLE\Портативные проги\crackdownloader_2_2.exe File name: crackdownloader_2_2.exe
Size: 399.87 KB (399872 bytes)
MD5: 008e1d4a37d485e71527b3c3954b49a4
Detection count: 178
File type: Executable File
Mime Type: unknown/exe
Path: F:\$RECYCLE.BIN\S-1-5-21-2418101895-765892343-1215472340-1001\$RQNAVLE\Портативные проги\crackdownloader_2_2.exe
Group: Malware file
Last Updated: February 3, 2023
%USERPROFILE%\Templates\cache\SFCsrvc.pif File name: SFCsrvc.pif
Size: 361.59 KB (361597 bytes)
MD5: 37d9c4955b4589f50ff844203b71e489
Detection count: 46
Mime Type: unknown/pif
Path: %USERPROFILE%\Templates\cache
Group: Malware file
Last Updated: March 3, 2011
C:\RECYCLER\S-1-5-21-8263119421-6399144013-137065887-7029\recycle.exe File name: recycle.exe
Size: 666.11 KB (666112 bytes)
MD5: c01caa289deed77adcf2f90b77bbf67b
Detection count: 31
File type: Executable File
Mime Type: unknown/exe
Path: C:\RECYCLER\S-1-5-21-8263119421-6399144013-137065887-7029
Group: Malware file
Last Updated: March 6, 2011
C:\ucto\Zaloha\C\WINDOWS\autoclk.exe File name: autoclk.exe
Size: 122.88 KB (122880 bytes)
MD5: ecac8517507370b82abf68894594bc5d
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: C:\ucto\Zaloha\C\WINDOWS\autoclk.exe
Group: Malware file
Last Updated: February 7, 2023
%WINDIR%\system32\mskufed3d.dll File name: mskufed3d.dll
Size: 28.16 KB (28160 bytes)
MD5: da910909a3ce49a66b7ce58e84a2962f
Detection count: 30
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: March 6, 2011
%WINDIR%\TEMP\ncfw\setup.exe File name: setup.exe
Size: 31.74 KB (31744 bytes)
MD5: 8eec09150d38f388b52c162581221ccc
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\TEMP\ncfw
Group: Malware file
Last Updated: March 6, 2011
%USERPROFILE%\odloadf1C.dll File name: odloadf1C.dll
Size: 610.3 KB (610304 bytes)
MD5: d108787dc9fce372e78619ea5ac6649d
Detection count: 7
File type: Dynamic link library
Mime Type: unknown/dll
Path: %USERPROFILE%
Group: Malware file
Last Updated: March 6, 2011
%WINDIR%\system32\msible.dll File name: msible.dll
Size: 62.97 KB (62976 bytes)
MD5: 5febc0f081c9fe82ed60b2a30f9ba0b9
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: March 14, 2011
%APPDATA%\Txtatl\codeclib.exe File name: codeclib.exe
Size: 402.43 KB (402432 bytes)
MD5: dd959e7018aaf9e4507626dbdb06b623
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Txtatl
Group: Malware file
Last Updated: March 14, 2011
%USERPROFILE%\Templates\cache\SFCsrvc.pif File name: SFCsrvc.pif
Size: 353.4 KB (353405 bytes)
MD5: 5d105b97dc75bd0d04f49fc7d4952a2e
Detection count: 5
Mime Type: unknown/pif
Path: %USERPROFILE%\Templates\cache
Group: Malware file
Last Updated: March 8, 2012
Loading...