We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Trojan:Win32/Killfiles.AM
Detected by Microsoft Defender Antivirus
Aliases: No associated aliases
Summary
Trojan:Win32/Killfiles.AM is a trojan with a destructive, file-deleting payload. In the wild, it has been observed being downloaded onto affected machines by a variant of Backdoor:Win32/MyDoom.gen, which in turn is being installed by Trojan:Win32/Lyzapo - a trojan with two components that cause the affected system to participate in Distributed Denial of Service attacks against remote servers.
At the time of publishing, machines affected by Trojan:Win32/Lyzapo have been observed participating in Distributed Denial of Service attacks against US and South Korean owned servers.
Manual removal is not recommended for this threat. To detect and remove this threat and other malicious software that may have been installed, run a full-system scan with an up-to-date antivirus product such as the Microsoft Safety Scanner (http://go.microsoft.com/fwlink/?LinkId=212742). For more information, see http://www.microsoft.com/protect/computer/viruses/vista.mspx.