Welcome to the Virus Encyclopedia of Panda Security.
It is programmed to carry out plenty of modifications in the Windows Registry, which prevent the computer from working properly. However, due to a programming error, it only disables several functions, such as Search from the Start menu or System Restore. It spreads via the mapped, shared and removable drives.
|First detected on:||March 28, 2009|
|Detection updated on:||March 31, 2009|
Autorun.ITS is a worm that is programmed to carry out plenty of modifications in the Windows Registry, which prevent the user from carrying out the following actions:
- Doing searches in a fast and straight way, as it disables the option Search from the Start menu.
- Restoring system, which is used to undo changes in the system and recover previously created restore points.
Autorun.ITS spreads via shared, mapped and removable drives, by making copies of itself in them.
Autorun.ITS is easy to recognize, as it displays the following symptoms:
- It modifies the wallpaper established by the user, changing it to the one that Windows established by default:
If users have selected the Windows wallpaper by default, they will not notice any changes, but if they have another wallpaper, they will see that it has been modified.
- It modifies the Internet Explorer Start Page, changing it to the following:
Additionally, it modifies the title of the Internet Explorer windows, adding the following text: New Scala, as can be seen in the image.