Summary

Summary
Action
More Information
| How it spreads |
|
|---|---|
| Affected operating systems | Windows |
| Characteristics |
|
| Included in our products from | September 2008 (4.33) |
| Protection available since | 20 July 2008 08:31:27 (GMT) |
| Detected by | All Sophos products |
Action

Summary
Action
More Information
Please follow the instructions for removing worms.
More Information
W32/Autorun-GM copies itself to <Root>\CDBoot.exe and <System>\System32.exe.
W32/Autorun-GM creates the file autorun.inf which is also detected as W32/Autorun-GM.
W32/Autorun-GM edits the registry entry:
HKCR\exefile\Shell\open\command\
(Default)
<System>\System32.exe \"%1\" %*
