Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Jul 08, 2009 | Updated Sep 15, 2017

Worm:Win32/Renocide.gen!C

Detected by Microsoft Defender Antivirus

Aliases: Win32/SillyAutorun.UN (CA) Trojan.Win32.Autoit.dl (Kaspersky) Worm/Autoit.DJA (AVG) Win32.Worm.Sohanad.NCC (BitDefender) Win32/Tifaut.A (ESET) W32/Yahlover.worm.gen.f (McAfee) :W32/Harakit.D.worm (Panda) W32.SillyDC (Symantec)

Summary

Worm:Win32/Renocide.gen!C is the detection for a worm that spreads via removable drives and mapped network shares. It attempts to download additional files from a remote server.
To detect and remove this threat and other malicious software that may be installed on your computer, run a full-system scan with an appropriate, up-to-date, security solution. The following Microsoft product detects and removes this threat:
 
 
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.
Disable Autorun functionality
Worm:Win32/Renocide.gen!C attempts to spread via removable drives on computers that support Autorun functionality. This is a particularly common method of spreading for many current malware families. For information on disabling Autorun functionality, please see the following article:
Follow us