Aliases: BDS/Wortron.10.Srv, PSW.Generic.AYO, Trojan-PSW.Win32.Wortron.10.b, Trojan.PSW.Wortron.10.B, Trojan.PSW.Wortron.10.c
Variants: Vgret.A, W32/Wotron-B, W32/Wotron.A, W32/Wotron.worm, Win32/Malum.AVOQ infection., Worm:Win32/Worton

Classification: Malware
Category: Computer Worm

Status: Active & Spreading
Spreading: Slow
Geographical info: Asia, North and South America, and some parts of Europe and Australia
Removal: Easy
Platform: W32
Discovered: 02 Apr 2002
Damage: Low

Characteristics: The W32.Wotron.Worm program is created utilizing a worm creation kit. The files created from these kits are received as e-mail messages. The characteristics of W32.Wotron.Worm are determined when the worm is constructed then suddenly, it varies.

More details about W32.Wotron.Worm

Since W32.Wotron.Worm is created using the kit, it copies itself to Wininet.exe in the system and optional password stealing component creates the Sysd.dll and Exelib.dll files. If the PC is infected with W32.Wotron.Worm, you must reset all your passwords because the creator of this worm could command the worm to send these data. The Exelib.dll file contains the stealing process of personal data on your system. This worm also changes values on your registry, which then cause the worm to run automatically whenever the windows starts up.

In order to remove W32.Wotron.Worm you must delete the W32.Wotron.Worm processes particularly the .dll files by running a full scan system using a reputable antivirus program. Remove the W32.Wotron.Worm registry keys by going to start button > run > type in regedit in the small box and click Ok. A black screen will come out and there, delete all registry keys associated with W32.Waledac.