W32.Svoy.A@mm
Aliases: I-Worm.Svoy.a
Variants: W32/Svoy.worm.gen
Classification: Malware
Category: Computer Worm
Status: Active & Spreading
Spreading: Fast
Geographical info: Asia, North and South America, and some parts of Europe and Australia
Removal: Hard
Platform: W32
Discovered: 04 Jun 2004
Damage: Low
Characteristics: The W32.Svoy.A@mm applicationutilizes Mapi.dll to transfer itself to the email addresses that it locates on the computer.
W32.Svoy.A@mm Removal Tool
If you have Malware on your computer it will cause annoyances and will damage your system. You should either:
A. Manually remove the infected files from your computer, or
B. Automatically scan your system using trusted software
A. Manually remove the infected files from your computer, or
B. Automatically scan your system using trusted software
RECOMMENDED:
We recommend that you scan your system for malware. Our partner has a computer worm removal tool to automatically clean W32.Svoy.A@mm from your computer.
More details about W32.Svoy.A@mm
The worm finds all the drives that are fixed and the drives of the ramdisk from the C to Y. The virus restore the address of the email from the files that have .db?, .html, .in?, .md?, .his, .htm, .ad?, .cnv, .ab?, .me, .csv, .tx?, .wa?, .xls, /doc, and .log. The worm will then replicate the email address to the files %System%Winmail.mls and %System%Winmail.mts that it searches. The worm launches itself to all of the addresses of the email that it searches. The subject is “Message is not delivered” or “he subject may be in Russian, in which case the message body will be in Russian as well”, and the Attachment is “This will be a 57,856 byte file. It will use the file name of one of the files created in step 1”.Once the W32.svoy.A@mm was performed, the worm arrives to the email that is being sent with a line of the subject “Message is not delivered” and then consists of an attachment with a variable name. The attachment file has the .exe extension. Once the W32.Svoy.A@mm was being run it will create the DOC
Browse for more malware information
- W32.Svoy.A@mm
- W32.SysId.Worm
- W32.Takeobel
- W32.Tanexor.A
- W32.Tasnab
- W32.Tdiserv.A
- W32.Temir.Worm
- W32.Tibick
- W32.Tidserv
- W32.Timese.AG
- W32.Titog.C.Worm
- W32.Tkbot.Worm
- W32.Tofazzol
- W32.Topion.A
- W32.Topsec
- W32.Toxbot
- W32.Traxg@mm
- W32.Trilisa@mm
- W32.Troresba
- W32.Tupse
- W32.Tzet.Worm
- W32.Uisgon.A
- W32.Unfunner.A
- W32.Update.Worm
- W32.Uporesc
- W32.Usbalex
- W32.Usbwatch
- W32.Valcard
- W32.Validin
- W32.Vapka.A