| General information of W32/Autorun.worm!ke | |
| Name: | W32/Autorun.worm!ke (Free Scan) |
| Affected OS: | Windows NT/2000/XP/Vista |
| Category: | Worm |
| Risk level : |
![]() |
W32/Autorun.worm!ke is detection for malware that attempts to spread using autorun methods.
When executed, the Worm copies itself into the following locations:
**Where %WinDir% = \WINDOWS (Windows 9x/ME/XP/Vista), \WINNT (Windows NT/2000)]
An autorun.inf file is dropped into the root of all removable drives and mapped drives in an attempt to autorun an executable when the drive is accesed.
The file "AutoRun.inf" is pointing to the malware binary executable, when the removable or networked drive is accessed from a machine supporting the Autorun feature, the malware is launched automatically.
The following registry values have been added and the below mentioned registry ensures that, the Trojan registers itself with the compromised system and execute itself upon every boot.