- Nyxem Worm
-
Nyxem Worm is a mass-mailing computer worm discovered on January 3, 2006. It tries to spread using remote shares, activating itself on the 3rd of every month. Nyxem Worm also tries to disable security-related and file sharing software as well as destroying files of certain types, such as from Microsoft Office. When the worm is executed, it copies itself to rundll16.exe, scanregw.exe, Update.exe, Winzip.exe. New variants of Nyxem worm include W32 Nyxem.A, W32 Nyxem.E and W32 Nyxem.D. This worm is also known as VB.BI
Email-Worm W32 Nyxem.E is a very high risk threat and should be removed immediately. Delaying the removal of Nyxem may cause serious harm to your system and will likely cause a number of problems, including loss of data, loss of control, and leaking private information.
See also
External links
- SANS Website - BlackWorm Summary
- LURHQ Threat Intelligence Group BlackWorm Hostile Payload Scheduled to Activate Feb 3
- Process Library about Rundll32.exe
- CME-24 (BlackWorm) Users’ FAQ
Categories:- Email worms
- Malware stubs
Wikimedia Foundation. 2010.