Threat Database Worms Worm.Win32.AutoRun.nn

Worm.Win32.AutoRun.nn

By SpideyMan in Worms

Threat Scorecard

Ranking: 7,868
Threat Level: 10 % (Normal)
Infected Computers: 964
First Seen: September 6, 2011
Last Seen: September 4, 2023
OS(es) Affected: Windows

Worm.Win32.AutoRun.nn is a malicious worm which can downloads and install additional malware threats before attackers gain remote access to the affected computer system. Worm.Win32.AutoRun.nn can gather and send your email address book to an email spammer and send unexpected email messages from your computer without you knowing about that. Worm.Win32.AutoRun.nn infects system files and programs on the targeted computer. Worm.Win32.AutoRun.nn creates autorun.inf and recycler.exe files to every existing drive and tries to copy them to any external drive you connect. Uninstall Worm.Win32.AutoRun.nn immediately upon detection.

File System Details

Worm.Win32.AutoRun.nn may create the following file(s):
# File Name Detections
1. C:\WINDOWS\system32\[RANDOM CHARACTERS].dll
2. C:\[RANDOM CHARACTERS].exe
3. C:\recycler.exe
4. C:\WINDOWS\system32\[RANDOM CHARACTERS].exe
5. C:\Documents and Settings\\Local Settings\Temp\[clear all]
6. C:\Documents and Settings\\Local Settings\Temporary Internet Files\[clear all]
7. C:\WINDOWS\system32\[RANDOM CHARACTERS].inf
8. C:\Documents and Settings\\Application Data\[RANDOM CHARACTERS]
9. C:\autorun.inf

Registry Details

Worm.Win32.AutoRun.nn may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\%APP%\Debugger

URLs

Worm.Win32.AutoRun.nn may call the following URLs:

https://feed.musicstreamsearch.com/?q=

Trending

Most Viewed

Loading...