Threat Database Worms Worm.Win32.AutoRun.bhqp


By ESGI Advisor in Worms

Worm.Win32.AutoRun.bhqp is a malicious network-aware worm infection that tries to copy itself across the existing network. Worm.Win32.AutoRun.bhqp can set the drive to autoplay by creating autorun.inf file in its root directory. If the drive is shared across the network then other remote PCs can be corrupted by the Worm.Win32.AutoRun.bhqp any time they attempt to access this share. Worm.Win32.AutoRun.blxe creates start-up item in the registry entry so when your computer boots up, it will launch automatically.

File System Details

Worm.Win32.AutoRun.bhqp may create the following file(s):
# File Name Detections
1. %UserProfile%\%UserName%1\winlogon.exe

Registry Details

Worm.Win32.AutoRun.bhqp may create the following registry entry or registry entries:
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]NVIDIA Media Center Library = "%UserProfile%\%UserName%1\winlogon.exe"


Most Viewed
