Worm

Worm.Autorun.NC3 removal

Malware Removal

The Worm.Autorun.NC3 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm.Autorun.NC3 virus can do?

  • Authenticode signature is invalid

How to determine Worm.Autorun.NC3?


File Info:

name: C1CB6403EDB0A568181F.mlw
path: /opt/CAPEv2/storage/binaries/6a1c032e57990574ca5d53de64d076418b348d428a02d7f74f440d72394a99aa
crc32: EE8F5C10
md5: c1cb6403edb0a568181fc8ed3c1274af
sha1: 83eeab2ec2b1f1792f3de57d376555294423f293
sha256: 6a1c032e57990574ca5d53de64d076418b348d428a02d7f74f440d72394a99aa
sha512: a4978af13ab93c2ecf7e2423fd6055653baf83dcfdf5be8d328a8a1eb8143b67d079ac910544ce19b00fa6c26161d372b8224e971032c06e46f8fdb53e04f4d4
ssdeep: 768:CjZSPvBrHYZjXRIEeVFxhmmvdgZXjYt1NEDIefZsL:CF+HCjBuV1mHJMt1y
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1FB730DB3B6B35C4AD5D27DBE6B8398E61573A14D0F433651F2808B2DB729E201897E43
sha3_384: 5c6f8990992d978e3f33e9f81c7b0c482bbdba88a9ee271702f3c05141cb64a22b5801cbcb8f4114e1d59a147acd96ca
ep_bytes: 6808124000e8f0ffffff000000000000
timestamp: 2009-06-17 09:30:46

Version Info:

Translation: 0x0409 0x04b0

Worm.Autorun.NC3 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Chinky.2
CAT-QuickHealWorm.Autorun.NC3
SkyhighBehavesLike.Win32.VBObfus.lt
McAfeeW32/VBNA.worm.gen.c
Cylanceunsafe
ZillyaWorm.Basun.Win32.18786
SangforSuspicious.Win32.Save.vb
K7AntiVirusTrojan ( f1000d031 )
K7GWTrojan ( f1000d031 )
ArcabitTrojan.Chinky.2
BaiduWin32.Worm.AutoRun.aw
VirITTrojan.Win32.Shiru.AY
SymantecTrojan Horse
tehtrisGeneric.Malware
ESET-NOD32Win32/AutoRun.VB.ET
APEXMalicious
ClamAVWin.Trojan.VB-1047
KasperskyWorm.Win32.Vobfus.ewvl
BitDefenderGen:Trojan.Chinky.2
NANO-AntivirusTrojan.Win32.Autoruner.dykixm
SUPERAntiSpywareTrojan.Agent/Gen-NameThief[Smart]
AvastWin32:AutoRun-AYY [Wrm]
TencentWorm.Win32.Vb.wc
EmsisoftGen:Trojan.Chinky.2 (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebWin32.HLLW.Autoruner.7155
VIPREGen:Trojan.Chinky.2
TrendMicroWORM_VB.SM
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.c1cb6403edb0a568
SophosW32/SillyFDC-DS
IkarusTrojan.VB.Inject
JiangminWorm/VBNA.gyow
GoogleDetected
AviraTR/Dropper.Gen
VaristW32/VB.W.gen!Eldorado
Antiy-AVLTrojan/Win32.VB
Kingsoftmalware.kb.a.1000
XcitiumWorm.Win32.VBNA.~gen@1qlvkj
MicrosoftTrojan:Win32/VB
ZoneAlarmWorm.Win32.Vobfus.ewvl
GDataGen:Trojan.Chinky.2
CynetMalicious (score: 100)
AhnLab-V3Worm/Win32.Basun.R1388
Acronissuspicious
BitDefenderThetaAI:Packer.D08B36E41F
ALYacGen:Trojan.Chinky.2
MAXmalware (ai score=82)
VBA32TScope.Trojan.VB
MalwarebytesGeneric.Worm.AutoRun.DDS
PandaW32/Autorun.JKC
TrendMicro-HouseCallWORM_VB.SM
RisingWorm.Win32.VB.xi (CLASSIC)
YandexTrojan.GenAsa!0qTotRoDViQ
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VBNA.G!tr
AVGWin32:AutoRun-AYY [Wrm]
DeepInstinctMALICIOUS
alibabacloudTrojan[dropper]:Win/Autorun.3c0b5054

How to remove Worm.Autorun.NC3?

Worm.Autorun.NC3 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment