Home Malware Programs Worms Autorun.ZI

Autorun.ZI

Posted: December 12, 2011

Threat Metric

Threat Level: 5/10
Infected PCs: 2,703
First Seen: December 12, 2011
Last Seen: October 3, 2022
OS(es) Affected: Windows

Aliases

SHeur4.PDE [AVG]Riskware/Kiser [Fortinet]SPR/Kiser.ats [AntiVir]HackTool.Win32.Kiser.ats [Kaspersky]Win32/Cycbot.KD!generic [eTrust-Vet]BackDoor.Gbot.1505 [DrWeb]Troj/CycBot-R [Sophos]Gen:Variant.Kazy.48467 [BitDefender]Win32:Cycbot-PM [Trj] [Avast]a variant of Win32/Kryptik.XGT [NOD32]Riskware/NirCmd [Fortinet]NirCmd [Sophos]Tool-NirCmd [McAfee]Hider.OOS [AVG]Win32:Alureon-AOW [GData]
More aliases (241)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Windows\SysWOW64\MPK\MPKView.exe File name: MPKView.exe
Size: 2.98 MB (2988032 bytes)
MD5: 19349bcaeee80c65d8e8f428bb84bffc
Detection count: 112
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\SysWOW64\MPK\MPKView.exe
Group: Malware file
Last Updated: October 19, 2021
%USERPROFILE%\Desktop\ComboFix.exe File name: ComboFix.exe
Size: 4.33 MB (4333452 bytes)
MD5: f491c076b7947fd327ea6d81774fe8e5
Detection count: 75
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%\Desktop
Group: Malware file
Last Updated: December 18, 2011
%PROGRAMFILES(x86)%\LP\1FFB\7FC.exe File name: 7FC.exe
Size: 289.79 KB (289792 bytes)
MD5: 992710d90eb851514c8f7c4fc42e9254
Detection count: 72
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\LP\1FFB
Group: Malware file
Last Updated: December 14, 2011
%ALLUSERSPROFILE%\Application Data\oKGUvxjzUCiQ4v.exe File name: oKGUvxjzUCiQ4v.exe
Size: 369.66 KB (369664 bytes)
MD5: 68d40345c7407885a55f20a9c0ffc354
Detection count: 55
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Application Data
Group: Malware file
Last Updated: December 14, 2011
%ALLUSERSPROFILE%\Application Data\LhZ47ZN0LkjNp8.exe File name: LhZ47ZN0LkjNp8.exe
Size: 352.9 KB (352904 bytes)
MD5: a032f4acb505bad8f13ef49d378d49c8
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Application Data
Group: Malware file
Last Updated: December 13, 2011
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 162.81 KB (162816 bytes)
MD5: 7cbf94b84e6025b4d265e6a6fba1f359
Detection count: 34
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 14, 2011
%PROGRAMFILES%\Sticky Password\stpass.exe File name: stpass.exe
Size: 2.78 MB (2786648 bytes)
MD5: 8aa356d59a632a2eaf2df740b18637f1
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Sticky Password
Group: Malware file
Last Updated: June 15, 2020
%ALLUSERSPROFILE%\Application Data\YPfdbKQmYWnOqAL.exe File name: YPfdbKQmYWnOqAL.exe
Size: 465.92 KB (465920 bytes)
MD5: dce1650b61a4c86210f60f333fa0068a
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %ALLUSERSPROFILE%\Application Data
Group: Malware file
Last Updated: December 14, 2011
%USERPROFILE%\bmhost.exe File name: bmhost.exe
Size: 253.95 KB (253952 bytes)
MD5: 4927db0e11d1f1d48430ea6230d9b777
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %USERPROFILE%
Group: Malware file
Last Updated: December 13, 2011
%APPDATA%\36AA3\lvvm.exe File name: lvvm.exe
Size: 215.04 KB (215040 bytes)
MD5: fddc426fb990b95e75524d58cc4aa6f0
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\36AA3
Group: Malware file
Last Updated: December 14, 2011
%WINDIR%\system32\xmlprw32.dll File name: xmlprw32.dll
Size: 156.67 KB (156672 bytes)
MD5: b252a66a4d86eacad1492a4f5806a986
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: December 13, 2011
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 187.9 KB (187904 bytes)
MD5: b3d7f440fb5c4f0489881162b3cc99dd
Detection count: 14
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 13, 2011
%WINDIR%\System32\drivers\cdrom.sys File name: cdrom.sys
Size: 49.53 KB (49536 bytes)
MD5: 559df4fb4bcd2114568d4caea483d29a
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 13, 2011
Loading...