We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Worm:Win32/Autorun.UO
Aliases: Worm/Autoit.ABWG (AVG) Worm.Autorun.VIN (BitDefender) Trojan.MulDrop.52150 (Dr.Web) Win32/AutoRun.DK (ESET) Backdoor.Win32.IRCBot.nav (Kaspersky) W32/Autorun.worm!fz (McAfee) Agent.MZPP (Norman) W32/IRCBot.CRH (Panda) Worm.IRCBot.AIRS (VirusBuster)
Summary
Recovering from recurring infections on a network
-
Ensure that an antivirus product is installed on ALL machines connected to the network that can access or host shares (see above for further detail).
-
Ensure that all available network shares are scanned with an up-to-date antivirus product.
-
Restrict permissions as appropriate for network shares on your network. For more information on simple access control, please see: http://technet.microsoft.com/library/bb456977.aspx.
-
Remove any unnecessary network shares or mapped drives.