Worm

How to remove “Worm.Generic.244008”?

Malware Removal

The Worm.Generic.244008 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm.Generic.244008 virus can do?

  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Checks for the presence of known windows from debuggers and forensic tools
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Worm.Generic.244008?


File Info:

crc32: F940E472
md5: 05a0f71b4fb6cfd19b6b15c5b533d5bd
name: Sms_create.exe
sha1: 6033073e8bd91f3810a935ba73c49391f40974e9
sha256: 6536f76d28488f587819868ffc6f581713050d7314303efc9350c1b40cf64ca2
sha512: 1e4e67bb2a47e86b0d69e38b540435858b2a368b7433f05c8d258aef3dc18b1c01f809068aafc6641444db6803dfd8a4d395022bc0a47852626c8c22f6dba2ea
ssdeep: 24576:VgY907cqOnJ7tUWUNe7oljR+M/dKwVRyXhTdNzvJXMSqjOi5s9e0q+3wjfFLnPhx:Vl9msJZUi7l2dKu0bgD5sYH+3wj9hfbl
type: MS-DOS executable, MZ for MS-DOS

Version Info:

LegalCopyright:
InternalName:
FileVersion: 5.7.1.0
CompanyName: Igor Harchenko
LegalTrademarks:
Comments: Text sending to mobile phones tool
ProductName: SMS Create Pro
ProductVersion: 5.7.1
FileDescription:
OriginalFilename: sms_create.exe
Translation: 0x0409 0x04e4

Worm.Generic.244008 also known as:

MicroWorld-eScanWorm.Generic.244008
McAfeeW32/Autorun.worm!gf
CylanceUnsafe
AegisLabW32.W.AutoRun.vwq!c
TheHackerW32/AutoRun.vwq
ArcabitWorm.Generic.D3B928
Invinceaheuristic
SymantecW32.SillyFDC
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderWorm.Generic.244008
NANO-AntivirusTrojan.Win32.Autoruner.dvkigm
TencentWin32.Worm.Autorun.Frs
Ad-AwareWorm.Generic.244008
EmsisoftWorm.Generic.244008 (B)
ComodoWorm.Win32.AutoRun.vwq
F-SecureWorm.Generic.244008
DrWebWin32.HLLW.Autoruner.11848
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Backdoor.vc
SophosMal/Generic-S
IkarusVirus.Win32.QQRob.AS
WebrootW32.Malware.Gen
AviraWORM/Autorun.vwq
Antiy-AVLWorm/Win32.AutoRun
KingsoftWorm.Autorun.(kcloud)
GDataWorm.Generic.244008
ALYacWorm.Generic.244008
AVwareTrojan.Win32.Generic!BT
MAXmalware (ai score=82)
VBA32Worm.AutoRun
WhiteArmorMalware.HighConfidence
PandaTrj/CI.A
RisingTrojan.Generic (cloud:aDCJIHrDuyI)
YandexWorm.AutoRun!6rLfJthfyTk
SentinelOnestatic engine – malicious
FortinetW32/AutoRun.VWQ!worm
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen
CrowdStrikemalicious_confidence_100% (D)
Qihoo-360Win32/Worm.7f8

How to remove Worm.Generic.244008?

Worm.Generic.244008 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment