W32.Pilleuz

Risk Level 1: Very Low

Printer Friendly Page

Discovered: September 29, 2009
Updated: September 30, 2009 8:32:32 AM
Also Known As: W32/Autorun.worm!a758e0e7 [McAfee], W32/Rimecud [McAfee], W32/Autorun-AUP [Sophos]
Type: Worm
Infection Length: 109,056 bytes
Systems Affected: Windows 98, Windows 95, Windows XP, Windows Me, Windows Vista, Windows NT, Windows Server 2003, Windows 2000

W32.Pilleuz is a worm that spreads through file-sharing programs, Microsoft instant messaging clients and removable drives. It also opens a back door on the compromised computer.

Protection

  • Initial Rapid Release version September 30, 2009 revision 001
  • Latest Rapid Release version November 20, 2009 revision 006
  • Initial Daily Certified version September 30, 2009 revision 002
  • Latest Daily Certified version November 20, 2009 revision 025
  • Initial Weekly Certified release date September 30, 2009

Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.

Threat Assessment

Wild

  • Wild Level: Low
  • Number of Infections: 0 - 49
  • Number of Sites: 0 - 2
  • Geographical Distribution: Low
  • Threat Containment: Easy
  • Removal: Easy

Damage

  • Damage Level: Low
  • Payload: Opens a back door

Distribution

  • Distribution Level: Low
  • Target of Infection: Spreads through file-sharing programs, instant messaging and removable drives.

Writeup By: Masaki Suenaga
Search by name
Example: W32.Beagle.AG@mm
Windows 7
Windows Vista Security