Aliases: Backdoor.Rbot.gen, BackDoor-CGS trojan
It is a worm which attempts to spread to remote network shares.
It also contains backdoor Trojan functionality.
Spreads to network shares with weak passwords as a result of the backdoor Trojan element receiving the appropriate command from a remote user.
Moves itself to the Windows system folder as WUCMDEX.EXE
and creates entries in the registry at the following locations to run on system startup:
Use antivirus (also check How To Remove section)Startup Optimizer.