Skip to main content
Skip to main content
Published Apr 11, 2011 | Updated Sep 15, 2017

Worm:Win32/Doyoink.A

Detected by Microsoft Defender Antivirus

Aliases: Win32/Autorun.worm.239289 (AhnLab) W32/AutoRun.DG (Command) Win32.HLLW.Autorunner.6350 (Dr.Web) Worm.Win32.AutoRun.lvp (Kaspersky) W32/Autorun.worm.gen.za (McAfee) AutoRun.GHD (Norman) Trojan.Win32.Autoit.ex (Rising AV) Trojan.Win32.Autoit.gen.1 (Symantec) Worm.AutoIt.EP (VirusBuster)

Summary

Worm:Win32/Doyoink.A is a worm that spreads via removable drives and attempts to restart the computer when the affected user opens a command prompt.
To detect and remove this threat and other malicious software that may be installed on your computer, run a full-system scan with an appropriate, up-to-date, security solution. The following Microsoft products detect and remove this threat:
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.
Additional remediation instructions for Worm:Win32/Doyoink.A
This threat may make lasting changes to a computer's configuration that are NOT restored by detecting and removing this threat. For more information on returning an infected computer to its pre-infected state, please see the following articles:
  • Viewing hidden and/or system files:
  • Follow us