WORM REPORTED IN THE WILD
Virus Name : VBS/Redlof.A
Alias : VBS.Redlof , VBS/Redlof@M, Redlof worm,
Virus type : VBScript
level : Low
is an encrypted Visual basic script worm, uses Microsoft
outlook Express to spread. It also infects VBS, HTML, HTM,
ASP, PHP, JSP, and HTT files. Redlof infects the stationary
file BLANK.HTM of Outlook express to send
infected mails. Due
to the increased number of sample submission, we have added a
write-up and detailed removal instructions.
viewing the infected mail, the worm code will be executed
automatically. It checks for WSCRIPT.EXE in the system. If
found, it drops a copy of itself in %system%\kernel.dll and
also creates a new key kernel32 in the registry run section to
load automatically. %system% refers to the Windows system
WSCRIPT.EXE is not found in your system, it will overwrite
Windows system file kernel32.dll file and halts the system
also modifies several registry entries to run automatically
whenever a DLL file is accessed.
How can I protect my
Solo has incorporated Redlof in its signature file to protect
users from this worm attack. Solo antivirus
registered users are already protected from this
worm. Make sure that you have installed
registered version of Solo Antivirus to protect
your system from all virus threats.
To protect your system
against infection, install the security patches from the
according to your
Internet explorer version. Otherwise you can install the
latest version of Internet Explorer 6.0.
to remove this worm?
you found this worm, Run Solo Antivirus and choose clean
option on the infected files. When prompted, You have to
choose delete option on the worm components. Solo antivirus can detect and
remove VBS/Redlof.A worm safely.
Use the following link to Download 30 day
trial version of Solo antivirus
remove viruses from your computer.
Solo anti-virus not only
scans for all viruses, it contains a unique System
Integrity Checker to protect you from
New Internet Worms, Backdoors and
malicious VB, Java Scripts. It also
effectively removes all existing Internet Worms,
File viruses, malicious VBS, Java scripts,
Trojans, Backdoors, boot sector, partition table
and macro viruses.
purchase Solo antivirus using the link