![]() |
|
|
|
|
|||||||
| Malware Advisories (RSS) Malware Security Advisories Via RSS |
|
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Worm_agent.obz | iBot | Malware Advisories (RSS) | 0 | 03-27-2008 07:10 AM |
| Worm_agent.aacc | iBot | Malware Advisories (RSS) | 0 | 02-04-2008 12:10 AM |
| Worm_agent.aaee | iBot | Malware Advisories (RSS) | 0 | 02-01-2008 07:30 AM |
| Worm_agent.vdz | iBot | Malware Advisories (RSS) | 0 | 01-31-2008 11:20 PM |
| Worm_agent.ack | iBot | Malware Advisories (RSS) | 0 | 01-14-2008 10:40 AM |
|
|
Submit Tools | LinkBack | Thread Tools | Display Modes |
|
||||
|
Worm_agent.ad
This worm may be dropped by other malware.
It may be downloaded unknowingly by a user when visiting malicious Web site(s). This worm registers itself as a system service to ensure its automatic execution at every system startup. It does this by creating registry key(s)/entry(ies). It also creates other registry key(s)/entry(ies) as part of its installation routine. This worm drops copies of itself in all physical and removable drives. It drops an AUTORUN.INF file to automatically execute dropped copies when the drives are accessed. It drops component file(s), including TROJ_AGENT.OTJ. A certain dropped file replaces the legitimate file of the same name in the Windows system folder. It connects to a Web site to download a text file. The downloaded text file contains a list of malware download sites. As a result, the routines of the downloaded files may be exhibited on the system. More... |
||||
| Google UNIX.COM |
| Forum Sponsor | ||
|
|
| Thread Tools | |
| Display Modes | |
|
|