This worm drops copies of itself.
It drops files/components.
It creates registry entries to enable its automatic execution at every system startup.
It modifies registry entries to enable its automatic execution at every system startup.
It creates registry key(s)/entry(ies).
It drops copies of itself in all removable drives.
It drops an AUTORUN.INF file to automatically execute dropped copies when the drives are accessed.
This worm disables the Windows Task Manager, Registry Editor, and Folder Options in the Tools menu. It does the said routine by modifying related registry entries.