|
|
|
|
|
Virus Information |
|
| |
| W32.Badtrans.B |
| |
| Alias |
: W32.Badtrans-II
|
| |
| Category |
: Worm
|
| |
| Type |
: Mass Mailer
|
| |
| Update Number |
: 810
|
| |
| Description |
: W32.Badtrans-B is a variant of W32.Badtrans-A. It is received as an e-mail and uses the MS-Outlook security hole to automatically execute itself whenever the mail is viewed (as done in W32.Nimda).
|
| |
| Details |
: It copies itself as KERNEL32.EXE in the Windows System folder and adds a registry entry to automatically execute itself whenever the user logs into the system. It tries to mail itself to contacts from the Outlook address book.
|
| |
| Damage |
|
| |
| Risk Factor |
|
| |
| Instructions |
: Remove the virus as detected with SmartCOP and re-start your system.
|
| |
<< Back |
|
|
|