Internet Worm Information
Discovery Date: 02/16/2004
Length: 21504 bytes
Type: Internet Worm
SubType: E-mail worm
This is a detection for a new nework worm spreading via EMail, sending itself to addresses found on the victim machine and by copying itself mapped network drives.
When executed, the worm copies itself into %windir% folder using the filename SERVICES.EXE. It addes a key to the registry, so it gets activated on system start.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\ CurrentVersion\Run "service" =
Read more: http://vil.nai.com/vil/content/v_101027.htm
Your favorite shows are back!
Don’t miss your dramas, sitcoms and reality shows. Find out when and where they’re airing!