W32.SillyIM


Aliases: IM-Worm.Win32.Bropia.av, Trojan.Accido
Variants: Win32.Worm.Bropia.AV, W32/Bropia.AY.worm

Classification: Malware
Category: Computer Worm

Status: Active & Spreading
Spreading: Slow
Geographical info: Asia, Europe
Removal: Easy
Platform: W32
Discovered: 14 Jul 2005
Damage: Low

Characteristics: The W32.SillyIM application is a generic exposure that identifies variants of the W32.Silly family worms that multiples making use of an Instant Messaging applications.

More details about W32.SillyIM

The W32.SillyIM program is a general detection that identifies variants of the W32.Silly worm family that multiplies making use of the applications of the Instant Messaging. When W32.SillyIM is opened, it may create a duplicate of itself in the “%System%” or “%Windir%” folder. The W32.SillyIM program changes the registry key so that it’s opened each time windows opens. In a lot of cases, the W32.SillyIM application utilizes one or more of the loading points to be sure that it opens when open windows. The W32.SillyIM application multiplies making use of the Instant Messaging application.

The W32.SillyIM worm program installs its core components on the Windows system folder. It adds the ntos.exe file as its main executable files. The application makes changes on the system’s registry. It creates a registry key which enables the program to execute automatically at every Windows start-up. The W32.SillyIM worm application functions on 32-bit Windows platforms such as Windows 9x, Windows XP and Windows 2000.