Home / malwarePDF  

Worm:Win32/SillyShareCopy.E!inf


First posted on 02 October 2012.
Source: Microsoft

Aliases :

Worm:Win32/SillyShareCopy.E!inf is also known as BAT/VBWorm.NMX (Norman), TR/Script.59321 (Avira), Trojan.Script.59321 (BitDefender), W32.Pitin.B (Symantec), Win32/AutoRun.WD (ESET).

Explanation :



Worm:Win32/SillyShareCopy.E!inf is an "autorun.inf" file created by a worm to enable it to spread and infect other computers through network shares, removable devices and local drives.

Such files contain execution instructions for the operating system, so that when the removable drive is accessed from another computer supporting the Autorun feature, the worm is launched automatically.

It should be noted that "autorun.inf" files on their own are not necessarily a sign of infection, as they are used by legitimate programs and installation media.



Analysis by Marianne Mallen

Last update 02 October 2012

 

TOP