Click on screenshot to zoom
Danger level 8
Type: Worms

Worm.SillyFDC

Worm.SillyFDC is the latest worm infection to be causing headaches for internet users across the net. Being a generic worm detection, Worm.SillyFDC hails from the family of worms that tend to spread by replicating itself to removable media, and may in turn download alternative malware applications to the infected system.

The damage that Worm.SillyFDC causes is it degrades any systems’ performance, while it copies itself to various folder locations on the infected system.

Also known as: WormSillyFDC, Worm Silly FDC, Worm Silly and by its aliases: .exe, autoregistry.exe, CTFM0N.EXE, iexplore.exe and SuSoft.exe – this worm infection will need to be removed from any computer system it has embed itself within.

It is advised to adhere to the following computer practices, so as to avoid any possibility of being infected by this type of worm infection:

* Use a firewall to block all incoming connections from the Internet to services that should not be publicly available.
* Enforce a password policy
* Ensure that programs and users of the computer use the lowest level of privileges necessary to complete a task.
* Disable AutoPlay to prevent the automatic launching of executable files on network and removable drives, and disconnect the drives when not required. * Turn off file sharing if not needed.
* Turn off and remove unnecessary services
* If a threat exploits one or more network services, disable, or block access to, those services until a patch is applied.
* Always keep your patch levels up-to-date, especially on computers that host public services and are accessible through the firewall, such as HTTP, FTP, mail, and DNS services.
* Configure your email server to block or remove email that contains file attachments that are commonly used to spread threats, such as .vbs, .bat, .exe, .pif and .scr files.
* Isolate compromised computers quickly to prevent threats from spreading further.
* If Bluetooth is not required for mobile devices, it should be turned off.

Should your system have already fallen prey to the WormSillyFDC parasite, it is recommended to employ the services of a fully functional and up to date antispyware application, to remove this infection, and to ensure the integrity of your system is maintained.

Download Spyware Removal Tool to Remove* Worm.SillyFDC
  • Quick & tested solution for Worm.SillyFDC removal.
  • 100% Free Scan for Windows
disclaimer

How to manually remove Worm.SillyFDC

Files associated with Worm.SillyFDC infection:

SVCH0ST.EXE
svchost.exe
,.exe
CTFM0N.EXE
autoregistry.exe
iexplore.exe
SuSoft.exe
SVCH0ST.EXE
sysos.exe
CTFM0N.EXE
msime80.exe
svchost.exe
autoregistry.exe
iexplore.exe
,.exe

Worm.SillyFDC processes to kill:

,.exe
sysos.exe
autoregistry.exe
iexplore.exe
svchost.exe
SVCH0ST.EXE
svchost.exe
,.exe
CTFM0N.EXE
autoregistry.exe
iexplore.exe
SuSoft.exe
msime80.exe

Remove Worm.SillyFDC registry entries:

HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft©
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft©
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ HTML
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ,
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ctfmon.exe
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ AutoRegistry
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN HTML
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN Microsoft©
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN Microsoft©
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN AutoRegistry
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN ctfmon.exe
HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN ,
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Microsoft
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\W
Disclaimer

Comments

  1. kadaver Jul 1, 2010

    pretty good

Post comment — WE NEED YOUR OPINION!

Comment:
Name:
Please enter security code:
This is a captcha-picture. It is used to prevent mass-access by robots.