Home / malwarePDF  

Worm:VBS/Autorun.R!inf


First posted on 28 September 2012.
Source: Microsoft

Aliases :

Worm:VBS/Autorun.R!inf is also known as INF/AutoRun.AA (Avira), Worm.VBS.Autorun.e (BitDefender).

Explanation :



Worm:VBS/Autorun.R!inf is an "autorun.inf" file created by Worm:VBS/Autorun.BS in order for the worm to spread and infect other computers through network shares or removable devices.

Such files contain execution instructions for the operating system, so that when the removable drive is accessed from another computer supporting the Autorun feature, the worm is launched automatically.

It should be noted that "autorun.inf" files on their own are not necessarily a sign of infection, as they are used by legitimate programs and installation media.

Related encyclopedia entries

Worm:VBS/Autorun.BS



Analysis by Jireh Sanico

Last update 28 September 2012

 

TOP