Find a Partner
This window is encrypted for your security.
Need help? Ask the community or hire an expert.
Go to Avira Answers
Worm.Hai, W32/Hai.Worm, W95/Hai.A, W32.HLLW.Hai
Spreads over shared directories.
The worm searches for shared directories and copies itself in them.
W32/Hai.A spreads over networks, looking for a computer with NetBIOS protocol installed and full access for all users to \Windows directory. The worm drops a new thread in computers with open access to directories.
It modifies Win.ini, to be activated by the next system start. The file name is randomly chosen, as for example:
C:\%Windir%\Iegup.exe, Jkvjhb.exe. or Pueqfwh.exe.
Description inserted by Crony Walker on Tuesday, June 15, 2004