Malicious Software Encyclopedia: Win32/Gael
Published:
September 13, 2005 Win32/Gael is a parasitic virus that targets certain versions of Microsoft Windows. The virus infects Win32 PE .exe files locally and on writeable network shares. The virus can also download TrojanDownloader:Win32/Small from a Web site and run the file. On This PageThreat Overview
Aliases (Also Known As)Different antivirus vendors may be using different names to refer to this malicious software. Here are some of the names currently in use by antivirus software vendors participating in the Microsoft Virus Information Alliance (VIA):
Learn more about the
Microsoft Virus Information Alliance.
Technical Analysis
How to Prevent InfectionTake the following steps to help prevent infection on your system:
Enable a firewall on your computerUse a third-party firewall product or turn on the Microsoft Windows XP Internet Connection Firewall. To turn on the Internet Connection Firewall in Windows XP
Get the latest computer updatesUpdates help protect your computer from viruses, worms, and other threats as they are discovered. You can use the Automatic Updates feature in Microsoft Windows XP to automatically download future Microsoft security updates while your computer is on and connected to the Internet. To turn on Automatic Updates in Windows XP
Use up-to-date antivirus softwareMost antivirus software can detect and prevent infection by known malicious software. You should always run antivirus software on your computer that is updated with the latest signature files to automatically help protect you from infection. If you don't have antivirus software installed, you can get it from one of several companies. For more information, see http://www.microsoft.com/athome/security/downloads/default.mspx Use strong passwordsA strong password has at least eight characters and includes a combination of letters, numbers, and symbols. It is easy for you to remember, but difficult for others to guess. Weak passwords include any words in the dictionary, names, dates, consecutive letters or numbers, common words with symbol substitutions (for example, p@ssw0rd), and so on. Remove unneeded network sharesMalicious software can often spread over network shares. Remove unneeded network shares that are mapped to your computer. To remove network shares in Windows XP
How to Tell If Your Computer Is InfectedWin32/Gael may cause excessive network traffic and decreased system performance. Otherwise, there are no readily apparent indications that your computer is infected by this virus. How to Recover from InfectionAutomatic Recovery Transmission Methods
Payload Information
Affected Ports
|