I-Worm.Sexer.b
The Sexer.b worm spreads via the Internet as an infected email attachment file named, KAVUtil.exe.
Sender address: support@kaspersky.com
File attachment: KAVUtil.exe
Sexer then creates the file KAV.bmp in the Program Files\Common Files\system directory. The system then installs this file as the desktop background image.
Sexer then sends itself out to all the email addresses found in the email client's address book.
To physically mail itself, Sexer makes a direct connection with the SMTP server.
Manual removal:
Please, go to the key in the system registry: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
and delete the value: KAVUtil = kavutil.exe
Removal: kavutil.exe is removed by RegRun.
Read more... Removal instructions...
Recommended software:
UnHackMe - easy removal Rootkits/Adware/Spyware.
http://www.unhackme.com
RegRun Security Suite - removal and protection.
http://www.regrun.com
RegRun Reanimator - free removal tool.
greatis.com/reanimator
RegRun - User's Choice
Vista Programs - full info...
What is hidden in MSDN?
.NET Secrets Revealed
Why software developers prefer Win32.FreeTechSecrets.com?
All Unix Manuals in Alphabetical Order
C# controls for .NET in 3 simple steps.
Constantly updated. Last update:
May 5 2008
Interesting information about Vista programs...
Need consultation?
Would you like to add your opinion?