We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Worm:Win32/Mabezat.B
Aliases: Win32/Mabez_inf (AVG) INF/Mabezat.B (CA) Win32/Mabezat.A (ESET) IS/Mabezat.A (Frisk (F-Prot)) Worm.Win32.Mabezat.b (Kaspersky) Text/Mabezat.B (Norman) W32/Mabezat.C.worm (Panda) W32/Wazner-A (Sophos) W32.Mabezat.B (Symantec) Mal_Otorun1 (Trend Micro)
Summary
Recovering from recurring infections on a network
-
Ensure that an antivirus product is installed on ALL machines connected to the network that can access or host shares (see above for further detail).
-
Ensure that all available network shares are scanned with an up-to-date antivirus product.
-
Restrict permissions as appropriate for network shares on your network. For more information on simple access control, please see: http://technet.microsoft.com/library/bb456977.aspx.
-
Remove any unnecessary network shares or mapped drives.