W32/Areses.dr arrives in a spammed email and contains a copy of the W32/Areses@MM
worm, usually as an .HTA attachment. Upon executing the attachment it drops and executes its payload.
Indication of Infection
Upon execution, it drops its payloads and executes it.
Methods of Infection
W32/Areses.dr arrives as a spammed attachment.
Email-Worm.Win32.Scano.aq (Kaspersky), I-Worm/Scano (AVG), W32.Areses.Q!vbs (Symantec), W32/Bagle-GY (Sophos), Win32.Scano.AL@mm.VBS (BitDefender)