cari.scr - Dangerous
cari.scr
Manual removal instructions:
Antivirus Report of cari.scr:
cari.scr
I-Worm.MyLife.b
It is a worm virus being spread via the Internet as an e-mail attachment.
When the worm is launched for the first time it shows a window with a picture.
While installing the worm copies itself to the Windows system directory with the name "cari.scr" and registers this file in the system registry auto-run key:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run win=%SYSTEM%\cari.scr
To send infected messages the worm uses Microsoft Outlook, it sends messages to all addresses found in the Microsoft Outlook Address Book.
The worm also gets victim e-mail addresses from MSN Messenger e-mail base.
Also, the worm checks the current date, if the current hour value is 8, the worm executes its payload routine, deleting the following files: c:\*.*; d:\*.*; e:\*.*; f:\*.*
Also deleted are: *.sys files in the Windows directory and *.vxd, *.sys, *.ocx, and *.nls files in the Windows system directory
Remove it from startup by RegRun Startup Optimizer.
cari.scr | Malware |
cari.scr | Dangerous |
cari.scr | High Risk |
It is a worm virus being spread via the Internet as an e-mail attachment.
When the worm is launched for the first time it shows a window with a picture.
While installing the worm copies itself to the Windows system directory with the name "cari.scr" and registers this file in the system registry auto-run key:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run win=%SYSTEM%\cari.scr
To send infected messages the worm uses Microsoft Outlook, it sends messages to all addresses found in the Microsoft Outlook Address Book.
The worm also gets victim e-mail addresses from MSN Messenger e-mail base.
Also, the worm checks the current date, if the current hour value is 8, the worm executes its payload routine, deleting the following files: c:\*.*; d:\*.*; e:\*.*; f:\*.*
Also deleted are: *.sys files in the Windows directory and *.vxd, *.sys, *.ocx, and *.nls files in the Windows system directory
Remove it from startup by RegRun Startup Optimizer.
Dmitry Sokolov:
I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.
Since that time I work every day to fix the issues that antiviruses cannot.
If your antivirus have not helped you solve the problem, you should try UnHackMe.
We are a small company and you can ask me directly, if you have any questions.