Nyxem Worm
From Wikipedia, the free encyclopedia
| This article is orphaned as few or no other articles link to it. Please help introduce links in articles on related topics. (November 2006) |
Nyxem Worm is a mass-mailing computer worm discovered on January 3, 2006. It tries to spread using remote shares, activating itself on the 3rd of every month. Nyxem Worm also tries to disable security-related and file sharing software as well as destroying files of certain types, such as from Microsoft Office. When the worm is executed, it copies itself to rundll16.exe, scanregw.exe, Update.exe, Winzip.exe. New variants of Nyxem worm include W32 Nyxem.A, W32 Nyxem.E and W32 Nyxem.D.
Email-Worm W32 Nyxem.E is a very high risk threat and should be removed immediately. Delaying the removal of Nyxem may cause serious harm to your system and will likely cause a number of problems, including loss of data, loss of control, and leaking private information.
[edit] See also
[edit] External links
- SANS Website - BlackWorm Summary
- LURHQ Threat Intelligence Group BlackWorm Hostile Payload Scheduled to Activate Feb 3
- Process Library about Rundll32.exe
- CME-24 (BlackWorm) Users’ FAQ

