Also known as: SillyFDC
Enhanced Description
Agent.btz, also known as SillyFDC, is a Windows‑targeted worm that first gained notoriety after infecting United States military networks in 2008. The malware propagates primarily through removable storage devices—such as USB flash drives and external hard disks—leveraging the autorun feature commonly enabled on many systems. When a compromised host is connected to an infected drive, Agent.btz copies its payload files onto the new medium and attempts to execute them automatically, thereby extending its reach across multiple machines that share the same physical media. Beyond simply self‑replicating via removable devices, early reports suggest it may also attempt lateral movement into local network shares by scanning for writable folders or using common administrative shares (\ADMIN$, \
Agent.btz is a worm that primarily spreads itself via removable devices such as USB drives. It reportedly infected U.S. military networks in 2008. (Citation: Securelist Agent.btz)