Overview:

W32.Alcra.F spreads by attempting to drop a copy of itself in the target addresses’ default shares. If the said shares is password-protected, it uses NetBEUI functions to gather a list of user names and passwords, as well as a list of hardcoded user names and passwords as its login credentials.

Category: Worm

Risk Level: Medium

Aliases:

  • W32.Spybot.Worm
  • W32/Generic.m
  • W32/VB.NQ
  • Win32/Alcan.I
  • P2P-Worm.Win32.VB.dw
  • W32/VB-YY
  • WORM_GAOBOT.DF

Related Files and Process:

  • cmd.com
  • netstat.com
  • ping.com
  • regedit.com
  • taskkill.com
  • tasklist.com
  • tracert.com
  • outlook.exe 

View User’s Removal Procedure Below

View Complete Information and Removal : Click Here