Sophos

W32/Vbbot-AO

Aliases
  • W32/Vbbot virus
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Characteristics
  • Installs itself in the registry
Included in our products from May 2008 (4.29)
Protection available since 26 March 2008 10:31:22 (GMT)
Detected by All Sophos products

Action

More Information

W32/Vbbot-AO is a worm with backdoor functionality for the Windows platform.

W32/Vbbot-AO runs continuously in the background, providing a backdoor server which allows a remote intruder to gain access and control over the computer.

The following registry entry is created to run W32/Vbbot-AO on startup:

HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components\{570E0690-AB30-64A2-E35A-D04C5693B873}
StubPath
<pathname of the worm executable>

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer