Home / malwarePDF  

Worm:W32/AutoIt.Q


First posted on 28 November 2008.
Source: SecurityHome

Aliases :

There are no other names known for Worm:W32/AutoIt.Q.

Explanation :

This malware spreads by copying itself to removable devices and replacing the autorun.inf of the device with its own copy to ensure automatic execution.

right]The file called suicide.bat is an installation helper file that deletes the original malware file. It performs a ping loopback on the system to check for the presence of a functioning network card.

After completing its routine, the batch file deletes itself.

Last update 28 November 2008

 

TOP