I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
The file CSCUI.EXE is a computer worm.
The worm CSCUI.EXE is a self-replicating malicious program,
which uses a computer network to send copies of itself to other
computers.
You must fix the CSCUI.EXE problem as soon as possible!
Delete the file CSCUI.EXE from all infected computers in your network.
Set up your network firewall against CSCUI.EXE intervention.
CSCUI.EXE Information and Removal:
CSCUI.EXE is known as: Worm.Win32.Chunga.a [Kaspersky Lab] Generic.dx!sme [McAfee] Mal/VB-GI [Sophos] Worm:Win32/Autorun.ADP [Microsoft] Worm.Win32.VB [Ikarus].
MD5 of CSCUI.EXE = 0A7E99EAF189F12218288332F4D6A3E6
CSCUI.EXE size is 269648 bytes.
Full path on a computer: %APPDATA%\MICROSOFT\SYSTEMCERTIFICATES\MY\CERTIFICATES\CSCUI.EXE
Related Files:
C:\DOCUMENTS AND SETTINGS.EXE
C:\AUTORUN.INF
%COMMONAPPDATA%\ADOBE\APPMGMTS.EXE
%PROGRAMFILES%\COMMON FILES\DESIGNER\DBLIST.EXE
%COMMONDOCUMENTS%\MY PICTURES\CMMGR32.EXE
%COMMONAPPDATA%\MICROSOFT\MEDIA INDEX\CLBCATQ.EXE
%COMMONAPPDATA%\MICROSOFT\MEDIA INDEX\CLEANMGR.EXE
%PROFILES%\DEFAULT USER\APPLICATION DATA\COMCT332.BAT
%PROFILES%\DEFAULT USER\START MENU\BROWSER.EXE
%PROFILES%\LOCALSERVICE\LOCAL SETTINGS\CIADV.PIF
%PROFILES%\LOCALSERVICE\LOCAL SETTINGS\APPLICATION DATA\MICROSOFT\CREDENTIALS\S-1-5-19\CSRSRV.COM
%APPDATA%\ADOBE\C_21866.EXE
%LOCALSETTINGS%\COMCT332.EXE
%APPDATA%\ADOBE\DBADAPT.EXE
%APPDATA%\MICROSOFT\SYSTEMCERTIFICATES\MY\CERTIFICATES\CSCUI.EXE
%APPDATA%\MICROSOFT\WINDOWS MEDIA\C_1255.EXE
%MYDOCUMENTS%\MY EBOOKS\DESKMON.EXE
%PROGRAMFILES%\COMMON FILES\ODBC\DESKPERF.EXE
[PATHNAME WITH A STRING SHARE]\DGRPSETU.EXE
[PATHNAME WITH A STRING SHARE]\DISKPART.EXE
[PATHNAME WITH A STRING SHARE]\DVDUPGRD.EXE
%PROGRAMFILES%\INTERNET EXPLORER\SIGNUP\DPLAY.CMD
%PROGRAMFILES%\WINDOWS MEDIA PLAYER\DISKCOMP.COM