The program AUTOSTART.EXE is used for hidden penetration into PC and its remote administration.
UnHackMe is recommended as a reliable program for solving the problem with AUTOSTART.EXE.
Download for free: http://www.unhackme.com
Malware Analysis of AUTOSTART.EXE
Full path on a computer: %Temp%\AutoStart.exe
Detected by UnHackMe:
Item Name: Audio HD Driver
Author:
Current Setting: %TEMP%\AUTOSTART.EXE
Type: Registry Run
Removal Results: Success
Number of reboot: 1
AUTOSTART.EXE is known as:
Backdoor.Bot
AUTOSTART.EXE hash:
- MD5: 4da8bcb5c87c713decd583baef72631f
How to quickly detect AUTOSTART.EXE presence?
Registry:
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\1(4).exe: “%Temp%\1(4).exe”
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Audio HD Driver: “%Temp%\AutoStart.exe”
Files:
- %Temp%\AutoStart.exe
- %Temp%\service.exe
- %Temp%\td132ccwa2.gec