I-Worm.Win32.Yaha.28672 is another variant of Yaha.
How it spread
I-Worm.Win32.Yaha.28672 spreads itself via email. It retrieves email addresses from the following:
- Windows address book
- ..
I-Worm.Win32.Yaha.34304, which was found on 24 Dec 2002, is another variant of I-Worm.Win32.Yaha.
How it spreads
The worm selects mail recipients from the following files or address books:
- .NET messen..
VBS.io is a Trojan Horse script virus. It cannot spread itself and is created and run by PHP.io.
It overwrites '.sys', '.dll', '.ocx', and '.drv' files in C:WindowsSystem. These infected files cannot be recovered.
..