Worm

Dropped:Worm.Autorun.VCD removal

Malware Removal

The Dropped:Worm.Autorun.VCD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Worm.Autorun.VCD virus can do?

  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Dropped:Worm.Autorun.VCD?


File Info:

name: 9EA98D3CEF92F7C227BE.mlw
path: /opt/CAPEv2/storage/binaries/d242c0a31ea0a4b78410a809058dd88675298d266655006a8f4694ec23d1705a
crc32: 48A2A06E
md5: 9ea98d3cef92f7c227be8512fcae56cd
sha1: 8060c6cc92e2fa24f37830898e747f3dafd959a8
sha256: d242c0a31ea0a4b78410a809058dd88675298d266655006a8f4694ec23d1705a
sha512: cf3dea6313c474bf3777ad7e219981c1ac0fea11b0f78d4b93e1a4771e5a791bacf7a31b53097dab45672df2141fa24de7be4514625f37edc96be046af0aa6c1
ssdeep: 1536:09sIQHIdV59b7l2ioEM8b4Hp96VJkWJyxphKjgcfzT1RzJU6xqPh540Q:CaodVF2ioECJ6JJxLlUHh540
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E6D37C1276C2C073E50500758806C7B66A6AFC355F656AC3BBD5377E4F392D2EE3A282
sha3_384: 981d04733a8942213812836e9fe5adb9eadf4e1f0009c1da12cc1146988efab21875c502d9e03b62edf7663d2f1a3612
ep_bytes: e8a3820000e978feffff8bff558bec8b
timestamp: 2055-05-25 18:10:40

Version Info:

0: [No Data]

Dropped:Worm.Autorun.VCD also known as:

BkavW32.AIDetectNet.01
Elasticmalicious (high confidence)
MicroWorld-eScanDropped:Worm.Autorun.VCD
CAT-QuickHealWorm.Autorun.BA5
ALYacDropped:Worm.Autorun.VCD
MalwarebytesWorm.AutoRun
VIPREDropped:Worm.Autorun.VCD
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
BaiduWin32.Worm.AutoRun.fm
VirITWorm.Win32.AutoRun.EDQ
SymantecW32.SillyFDC
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/AutoRun.GQ
APEXMalicious
CynetMalicious (score: 100)
KasperskyWorm.Win32.AutoRun.edq
BitDefenderDropped:Worm.Autorun.VCD
NANO-AntivirusTrojan.Win32.AutoRun.khut
SUPERAntiSpywareTrojan.Agent/Gen-Autorun
AvastWin32:AutoRun-RO [Wrm]
TencentMalware.Win32.Gencirc.10b3a641
EmsisoftDropped:Worm.Autorun.VCD (B)
F-SecureWorm.WORM/Autorun.edq.37
DrWebWin32.HLLW.Autoruner.1999
ZillyaWorm.AutoRun.Win32.20
TrendMicroWORM_AUTORUN.YG
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.9ea98d3cef92f7c2
SophosW32/Autorun-CBS
SentinelOneStatic AI – Malicious PE
GDataDropped:Worm.Autorun.VCD
JiangminWorm/AutoRun.fyj
AviraWORM/Autorun.edq.37
MAXmalware (ai score=83)
Antiy-AVLWorm/Win32.AutoRun
XcitiumWorm.Win32.AutoRun.~ZZ@g6mcs
ArcabitWorm.Autorun.VCD
ViRobotWorm.Win32.Autorun.132096
ZoneAlarmWorm.Win32.AutoRun.edq
MicrosoftWorm:Win32/Autorun.AGI
GoogleDetected
AhnLab-V3Worm/Win32.AutoRun.R23516
McAfeeW32/Autorun.worm.dk
VBA32BScope.Trojan.Wacatac
Cylanceunsafe
PandaW32/Autorun.ALC.worm
TrendMicro-HouseCallWORM_AUTORUN.YG
RisingWorm.Win32.Autorun.ezi (CLASSIC)
YandexTrojan.GenAsa!pXoMJlYyDIg
IkarusWorm.Win32.AutoRun
FortinetW32/Autorun.DK!worm
BitDefenderThetaAI:Packer.5B2D5D641F
AVGWin32:AutoRun-RO [Wrm]
DeepInstinctMALICIOUS

How to remove Dropped:Worm.Autorun.VCD?

Dropped:Worm.Autorun.VCD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment