Summary

Summary
Action
More Information
| Affected operating systems | Windows |
|---|---|
| Included in our products from | September 2004 (3.85) |
| Protection available since | 19 July 2004 21:20:39 (GMT) |
| Last updated | 20 July 2004 19:40:24 (GMT) |
| Detected by | All Sophos products |
Action

Summary
Action
More Information
Please read the instructions for removing W32/MyDoom-N.
More Information
W32/MyDoom-N is a mass-mailing worm which spreads by emailing itself via SMTP using its own engine. The worm also allows unauthorized remote access to the computer via a network. W32/MyDoom-N is a mass-mailing worm which spreads by emailing itself via SMTP using its own engine. The worm also allows unauthorized remote access to the computer via a network.
W32/MyDoom-N copies itself to the Windows folder as lsass.exe and creates the following registry entry to run itself on system logon:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
Traybar = <Windows>\lsass.exe
