I-Worm.Sexer.b
The Sexer.b worm spreads via the Internet as an infected email attachment file named, KAVUtil.exe.
Sender address: support@kaspersky.com
File attachment: KAVUtil.exe
Sexer then creates the file KAV.bmp in the Program Files\Common Files\system directory. The system then installs this file as the desktop background image.
Sexer then sends itself out to all the email addresses found in the email client's address book.
To physically mail itself, Sexer makes a direct connection with the SMTP server.
Manual removal:
Please, go to the key in the system registry: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
and delete the value: KAVUtil = kavutil.exe
Removal: kavutil.exe is removed by RegRun.
Read more... Removal instructions...
UnHackMe - Rootkit/Malware killer
Also recommended software:
RegRun Security Suite Platinum - removal and protection.
UnHackMe is a part of RegRun Security Suite Platinum.
RegRun - User's Choice
Vista Programs - full info...
What is hidden in MSDN?
.NET Secrets Revealed
Why software developers prefer Win32.FreeTechSecrets.com?
All Unix Manuals in Alphabetical Order
C# controls for .NET in 3 simple steps.
Constantly updated. Last update:
November 16 2009
Interesting information about Vista programs...
Need consultation?
Would you like to add your opinion?