Worm Autoit – svchost.exe – 0ca0629898def2e4e855d7bf56efd0ad

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Autoit
Also known as: Trojan Agent, Worm Autorun
SHA256: 72815c87073837f49e4ca5d1463c7585787cd151d111da4919e25a902d07cc33
SHA1: 5314561442d531c0e16ded3141b5efbfccb8a457
MD5: 0ca0629898def2e4e855d7bf56efd0ad
File size: 652417 bytes

Created files:

%AppData%\svchost.exe – Worm Autoit

Worm Autoit created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{0C9ABAC0-EECF-9DAD-BBA7-B40AC231DEDE}\StubPath: %AppData%\svchost.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\run\Update: %AppData%\svchost.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Update: %AppData%\svchost.exe
HKCU\Software\Microsoft\Active Setup\Installed Components\{0C9ABAC0-EECF-9DAD-BBA7-B40AC231DEDE}\StubPath: %AppData%\svchost.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Update: %AppData%\svchost.exe

Leave a Reply