Menu

Virus Information


Prevalence: orange Medium

Name: Win32.Netsky.Q@mm

Type:

How it spreads: The worm sends itself as an e-mail attachment to addresses found in the infected computer.It copies itself in the Windows directory as SysMonXP.exe and dropsto the same directory a DLL component: Fire

Affected operating:

Aliases: W32/Netsky-Q

Date of surface: Mar 28 2004 12:00AM
The worm sends itself as an e-mail attachment to addresses found in the infected computer. It copies itself in the Windows directory as SysMonXP.exe and drops to the same directory a DLL component: Firewalllogger.txt. It then sets the following registry key, so it will be executed each time Windows starts up: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\SysMonXP = %WINDIR%\SysMonXP.exe In 30/03/2004 it generates in the computer speaker sounds with different tones and durations
For disinfection, download and run our free eScan Anti-Virus Toolkit. The utility checks your computer, system registry, and running processes for malicious programs, illegal dialers, and sniffer tools. Note: This tool does not protect your PC in real time.

You can download the eScan Anti-Virus Toolkit utility from the MicroWorld Web site.

Alternatively, you can install MicroWorld’s Internet Security Suite which has real time detection capabilities.
You can download and install the product from our eScan download page.

Live Chat