Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Dec 21, 2008 | Updated Sep 15, 2017


Detected by Microsoft Defender Antivirus

Aliases: Win32/Neeris.worm.101376 (AhnLab) Win32/IRCBot.KA (CA) Win32/AutoRun.IRCBot.Q (ESET) Worm.Win32.AutoRun.fla (Kaspersky) W32/IRCbot.gen.a (McAfee) W32/Neeris-A (Sophos) W32.Spybot.Worm (Symantec)


Worm:Win32/Neeris.gen!C is the generic detection for a member of the Win32/Neeris family of worms. These worms spread via MSN Messenger and may contain backdoor functionalities. New variants of this worm may exploit a vulnerability in the Windows Server Service (srvsvc) in PCs that have not yet applied Microsoft Security Bulletin MS08-067.

The following free Microsoft software detects and removes this threat:

Even if we've already detected and removed this particular threat, running a full scan might find other malware that is hiding on your PC.

You can also visit the Microsoft virus and malware community for more help.

Follow us