1. /
  2. Security Response/
  3. VBS.Cable

VBS.Cable

Risk Level 1: Very Low

Discovered:
July 18, 2001
Updated:
February 13, 2007 11:54:12 AM
Type:
Worm

The VBS.Cable worm attempts to connect to a computer at an IP address, and then tries to write to that computer's hard drive. However, this is successful only if the drive to which it tries to write is a shared drive.

If the worm connects to a shared drive, it will attempt to remove the files (if they exist), which another virus placed on that computer, and then replace them with copies of its own Trojan horse program. The worm copies both itself and the Sys32.exe file to the shared drive.

Both files are copied into the \StartUp\ folder so that they will run automatically the next time that Windows starts.

Antivirus Protection Dates

  • Initial Rapid Release version July 18, 2001
  • Latest Rapid Release version September 28, 2010 revision 054
  • Initial Daily Certified version July 18, 2001
  • Latest Daily Certified version September 28, 2010 revision 036
  • Initial Weekly Certified release date pending
Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.

Threat Assessment

Wild

  • Wild Level: Low
  • Number of Infections: 0 - 49
  • Number of Sites: 0 - 2
  • Geographical Distribution: Low
  • Threat Containment: Easy
  • Removal: Easy

Damage

  • Damage Level: Low

Distribution

  • Distribution Level: Low
Writeup By: Jimmy Shah

Search Threats

Search by name
Example: W32.Beagle.AG@mm
STAR Antimalware Protection Technologies
Internet Security Threat Report
Symantec DeepSight Screensaver