We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Worm:Win32/Hamweq.DQ
Aliases: Win32.Palevo6.worm.Gen (AhnLab) Dropper.VB.DJQ (AVG) Worm/VBNA.B.740 (Avira) Win32.HLLW.Autoruner.7250 (Dr.Web) Worm.Win32.VBNA.b (Kaspersky) Trojan:Win32/Provis!rts (other) W32/Vobfus.AH.worm (Rising AV) Mal/VBInject-D (Sophos) WORM_VBNA.AE (Trend Micro)
Summary
Recovering from recurring infections on a network
-
Ensure that an antivirus product is installed on ALL computers connected to the network that can access or host shares.
-
Ensure that all available network shares are scanned with an up-to-date antivirus product.
-
Restrict permissions as appropriate for network shares on your network. For more information on simple access control, please see: http://technet.microsoft.com/library/bb456977.aspx.
-
Remove any unnecessary network shares or mapped drives.