Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Threats » W32/Updatr.C@mm

Overview

Threat Risk LOW LOW
Destructivity LOW LOW
Payload Installs annoying script worm
Detection files published 12 Dec 2001 03:00:00
Description created 10 Dec 2001 03:11:00
Description updated 13 Dec 2001 04:48:00
Malware type WORM
Alias
Spreading mechanism EMAIL
Summary None

W32/Updatr.C@mm

Spreading

The worm sends itself to all users in the Outlook address book. Possible attachment names are:Setup.EXEinstall.exeReadme.exeFiles.exePicture.exeQuotation.doc.exeLetter.doc.exeNudepic.exeSystem.exe

Payload Details

Installs a slightly polymorphic VB Script worm.

Analysis

n/a

Removal

The VB script worm that is installed is already detected by Lumension's antivirus software as VBS/Eva.B, because of obvious similarities in the code with an earlier VBS virus.


Last Updated: 12 Nov 2015 11:06:09