Home Malware Programs Trojans Trojan.Autoit.CKU

Trojan.Autoit.CKU

Posted: June 26, 2015

Threat Metric

Ranking: 248
Threat Level: 8/10
Infected PCs: 483,833
First Seen: June 26, 2015
Last Seen: March 10, 2025
OS(es) Affected: Windows

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\sstr_up.exe File name: sstr_up.exe
Size: 860.67 KB (860672 bytes)
MD5: 67e42eb7863156b2dc3303bdd6c209fa
Detection count: 841
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup
Group: Malware file
Last Updated: April 15, 2016
%APPDATA%\AdobeReader\Reader.exe File name: Reader.exe
Size: 3.15 MB (3152648 bytes)
MD5: b99dc5f10b63b59d4554063b7dfab2f3
Detection count: 511
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\AdobeReader
Group: Malware file
Last Updated: June 16, 2016
%APPDATA%\Word.exe File name: Word.exe
Size: 59.85 MB (59858174 bytes)
MD5: 003ffcb275316486eb190874d69d4187
Detection count: 180
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: October 15, 2016
%APPDATA%\Microsoft\Office\rundll32.exe File name: rundll32.exe
Size: 750.08 KB (750083 bytes)
MD5: a37b794a8f5af2c04a28612c1afe2956
Detection count: 164
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\Microsoft\Office
Group: Malware file
Last Updated: June 18, 2016
C:\WINDOWS\CIDD_P\lsass.exe File name: lsass.exe
Size: 344.06 KB (344064 bytes)
MD5: a357efc7b00b10631c41380e1b995a81
Detection count: 81
File type: Executable File
Mime Type: unknown/exe
Path: C:\WINDOWS\CIDD_P
Group: Malware file
Last Updated: November 8, 2018
file.exe File name: file.exe
Size: 656.72 KB (656729 bytes)
MD5: 994960542c8ffd73532e889700b57e12
Detection count: 68
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: February 18, 2022
C:\Users\<username>\Desktop\822e58e23c948c4e88983c2fea4fb0f8c0531da9a1bce950c388de58819a21a1.exe File name: 822e58e23c948c4e88983c2fea4fb0f8c0531da9a1bce950c388de58819a21a1.exe
Size: 733.69 KB (733696 bytes)
MD5: 00108fd3abd4445aa017bec120479139
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\Desktop
Group: Malware file
Last Updated: May 22, 2019
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\DiagnosticsHub.StandardCollector.Service\RemoteAppLifetimeManager.exe File name: RemoteAppLifetimeManager.exe
Size: 1.23 MB (1231888 bytes)
MD5: 5eccfed3f4c7bf9591dac2f859c7c611
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\DiagnosticsHub.StandardCollector.Service\RemoteAppLifetimeManager.exe
Group: Malware file
Last Updated: June 26, 2020

More files

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%APPDATA%\Google\int\one.exe%APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\RmClient.url%WINDIR%\killer.exe

Additional Information

The following directories were created:
%APPDATA%\bcryptprimitives%USERPROFILE%\Gu73246B57189
Loading...