The following files have been added to the system:
- %WINDIR%\web\connection.dat
- %WINDIR%\SYSTEM32\logoneui.exe
This W32 YahLover worm is a low threat virus but never the less it will harm your PC. If infected, the virus will infect system files and directories.
Removing this virus should be pretty easy, simply run your PC’s virus scanner if you have one and that should clean it. If your anti virus app is out of date, make sure you update the definition file before you scan and clean.
| other known names | Detection Names |
|---|---|
| AVG (GriSoft) | Autoit.DI |
| avira | Worm/AutoIt.sl.4 |
| Kaspersky | Worm.Win32.AutoIt.sl |
| BitDefender | Win32.Worm.Sohanat.Y |
| clamav | Trojan.Autoit.gen |
| FortiNet | W32/AutoIt.SL!worm |
| Eset | Win32/AutoRun.Autoit.AA worm |
| norman | Sohanad.BRU (trojan) |
| panda | Trj/CI.A |
| Sophos | Mal/Generic-L |
| vba32 | Worm.Autoit.SL |
| V-Buster | Worm.Autoit.Gen.3 (mutant) |
