Worm.Zimuse.A is a worm that tricks the user into believing that it is just a zip file. To make itself look more legitimate, it even asks the user for password in order to unzip its contents. It can delete all registry keys and files. It usually stays inactive for a period of 10 days once it has found its way into the system.
After that, it infects all USB drives connected to the system. After a period of 40 days, it overwrites the master boot record rendering the system unbootable. The worm infects removable drives inserted into the system by creating a copy of itself named zipsetup.exe and an autorun.inf file. It stays hidden from the users during the initial days of infection and can cause serious data loss.