TrendLabs Malware Blog
Glossary
TrendWatch
TrendLabs Twitter
WORM_KLEZ.F
Overview

Malware type: Worm

Aliases: KLEZ.F, KLEZ, WORM_KLEZ.I, W32/Klez.F@mm, , W32/Klez-G, W32.Klez.gen@mm, I-Worm

In the wild: Yes

Destructive: Yes

Language: English

Platform: Windows

Encrypted: Yes

Overall risk rating:


Description: 
This worm is similar to WORM_KLEZ.E. It is a destructive worm that propagates copies of itself via email and network drives. It drops a WINK*.EXE file and a WQK.EXE file in the Windows System folder of the infected system and then creates corresponding registry entries to execute these dropped files at system startup.

This worm terminates processes and carries a destructive payload of deleting files associated with certain antivirus programs.

Read more about these variants.

For additional information about this threat, see:
Solution
Technical Details

Description created: Jan. 22, 2002 7:58:10 PM GMT -0800
Description updated: May. 21, 2002 4:02:13 AM GMT -0800

Search a new malware

Tell us how we did. Take our quick survey.