VBS/Cidco
| VBS/Cidco |
Destructivity: |
| • Detected by virus detection files published: 12/11/2002 | • Type: Worm |
| • Virus characteristics first published: 12/11/2002 | • Spreading mechanism: Network |
| • Virus characteristics latest update: 12/17/2003 | • Overall risk: Low |
| • Infection type: Microsoft Visual Basic Script |
| Virus type |
Spreading mechanism |
Destructivity and payload |
Additional descriptions |
Detection and removal |
||||||||||
|
This is a small worm which copies it self to "C:\program files\Common files\Symantec Shared\VirusDefs\lulock.dat" and creates a key in the registry to run this file each time Windows is started. It then searh through all local disks and mapped networks drives after files with a .VBS extension and overwrites them with its own code. |
||||||||||||||