Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Feb 15, 2011 | Updated Sep 15, 2017

Worm:MSIL/Shaskooth.A

Detected by Microsoft Defender Antivirus

Aliases: Worm.MSIL.Autorun.hr (Kaspersky) W32/Obfuscated.H!genr (Norman) Worm/Generic2.AIBE (AVG) Trojan.Generic.KDV.124408 (BitDefender) Virus.Worm.SuspectCRC (Ikarus) Troj/Agent-QCG (Sophos)

Summary

Worm:MSIL/Shaskooth.A is a worm that spreads via logical and removable drives, and may display a message on the affected user's computer.
To detect and remove this threat and other malicious software that may be installed on your computer, run a full-system scan with an appropriate, up-to-date, security solution. The following Microsoft products detect and remove this threat:
 
 
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.
Disable Autorun functionality
This threat attempts to spread via removable drives on computers that support Autorun functionality. This is a particularly common method of spreading for many current malware families. For information on disabling Autorun functionality, please see the following article:
Follow us