Internet Worm Information
Discovery Date: 02/16/2004
Origin: Unknown
Length: 21504 bytes
Type: Internet Worm
SubType: E-mail worm
This is a detection for a new nework worm spreading via EMail, sending itself to addresses found on the victim machine and by copying itself mapped network drives.
When executed, the worm copies itself into %windir% folder using the filename SERVICES.EXE. It addes a key to the registry, so it gets activated on system start.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\ CurrentVersion\Run "service" =
C:\WINNT\services.exe -serv
Read more: http://vil.nai.com/vil/content/v_101027.htm

Chowhound
Comic Vine
GameFAQs
GameSpot
Giant Bomb
TechRepublic