Description:
This worm may be dropped by other malware.
It may be downloaded unknowingly by a user when visiting malicious Web sites.
It drops files/components.
It creates registry entries to enable its automatic execution at every system startup.
It modifies registry entries to enable its automatic execution at every system startup.
It uses Windows Task Scheduler to create a scheduled task that executes the dropped copy.
It disables Task Manager. It does the said routine to avoid termination from the affected system's memory.
It creates registry key(s)/entry(ies).
It creates registry key(s)/entry(ies).
It drops copies of itself in all removable drives.
It drops an AUTORUN.INF file to automatically execute dropped copies when the drives are accessed.
For additional information about this threat, see: Solution Technical Details
Description created: Feb. 24, 2008 10:24:50 PM GMT -0800
Search a new malware
Tell us how we did. Take our quick survey.
|