TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
VBS_KALAMAR.A
Overview

Malware type: VBScript

Aliases: Email-Worm.VBS.Lee-based (Kaspersky), VBS/SST@MM (McAfee), VBS/SST-A (Sophos), Virus:VBS/SST.A@mm (Microsoft)

In the wild: Yes

Destructive: No

Language: English

Platform: Windows

Encrypted: Yes

Overall risk rating:


Reported infections:

Damage potential:

High

Distribution potential:

High

Description: 

This Visual Basic Script worm is a mass-mailer that propagates via Microsoft Outlook as an attachment, ANNAKOURNIKOVA.JPG.VBS. It is encrypted and is a variant of a family of worms generated using the VBSWG virus construction kit. It does not modify nor delete files.

If the current system date is January 26, it tries to connect to a computer shop Web site in Netherlands. This virus can also be found on a UseNet newsgroup. Some samples of this worm are detected by Trend Micro antivirus as VBS_VBSWG.GEN.

This worm is in the wild. A variant, written in German, has been known to spread rapidly in Germany.

For additional information about this threat, see:
Solution
Technical Details

Description created: Feb. 20, 2001 10:24:17 AM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.