1. Symantec/
  2. Security Response/
  3. W32.Randex.Y

W32.Randex.Y

Risk Level 1: Very Low

Discovered:
November 4, 2003
Updated:
February 13, 2007 12:13:24 PM
Also Known As:
Backdoor.IRCBot.gen[KAV]
Type:
Worm
Systems Affected:
Windows

W32.Randex.Y is a network-aware worm that will copy itself as the following files:
  • \Admin$\system32\netd32.exe
  • \c$\winnt\system32\netd32.exe
The worm receives instructions from an IRC channel on a predetermined IRC server. One such command will trigger the aforementioned spreading.

Antivirus Protection Dates

  • Initial Rapid Release version November 5, 2003
  • Latest Rapid Release version March 3, 2008 revision 035
  • Initial Daily Certified version November 5, 2003
  • Latest Daily Certified version March 3, 2008 revision 037
  • Initial Weekly Certified release date November 5, 2003
Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.
Writeup By: Ying Lin

Search Threats

Search by name
Example: W32.Beagle.AG@mm
STAR Antimalware Protection Technologies
2016 Internet Security Threat Report, Volume 21
  • Twitter
  • Facebook
  • LinkedIn
  • Google+
  • YouTube