Antivirus and Security Software from Sophos

Sophos blogs

W32/Autoit-IY

Aliases
  • TR/Crypt.CFI.Gen
  • W32/YahLover.worm.gen virus
  • TR/Dropper.Gen
  • W32.Imaut
  • Mal_SHND-4
  • Worm:AutoIt/Helompy.A
  • Trojan-Spy.Win32.KeyLogger.cor
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Protection available since 8 February 2010 21:21:18 (GMT)
Detected by All Sophos products
  • Free virus, spyware, and adware scan
  • Test your existing anti-virus protection
  • Find threats your anti-virus missed

Action

More Information

W32/Autoit-IY is a worm for the Windows platform.

W32/Autoit-IY includes functionality to:

- steal confidential information
- access the internet and communicate with a remote server via HTTP

W32/Autoit-IY communicates via HTTP with the following locations:

peradjoka . t35 . com


When W32/Autoit-IY is installed the following files are created:

<Root>\Win\lsass.exe
<Root>\Win\names.txt

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer