This worm may arrive via removable drives.
This worm creates folders. It then drops several files, one of which is a configuration file that contains autorun strings. This worm then creates a registry entry to enable its automatic execution at every system startup.
This worm also creates a scheduled task to enable its automatic execution at a specified date and/or time.
This worm drops copies of itself in all removable drives. It also drops an
AUTORUN.INF file to automatically execute its dropped copies when the said drives are accessed.
More...