![]() |
|
|
|
|
|||||||
| Forums | Portal | Register | Forum Rules | FAQ | Contribute | Members List | Arcade | Search | Today's Posts | Mark Forums Read |
| Malware Advisories (RSS) Malware Security Advisories Via RSS |
|
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Worm_autorun.bs | iBot | Malware Advisories (RSS) | 0 | 04-28-2008 08:10 AM |
| Worm_autorun.apr | iBot | Malware Advisories (RSS) | 0 | 04-28-2008 12:10 AM |
| Worm_autorun.anj | iBot | Malware Advisories (RSS) | 0 | 04-27-2008 12:00 AM |
| Worm_autorun.bbm | iBot | Malware Advisories (RSS) | 0 | 04-22-2008 11:00 PM |
| Worm_autorun.tg | iBot | Malware Advisories (RSS) | 0 | 12-26-2007 06:00 AM |
|
|
Submit Tools | LinkBack | Thread Tools | Display Modes |
|
#1
|
||||
|
||||
|
Worm_autorun.bkz
This worm arrives via removal drives.
This worm drops the following files. A dropped component is injected into all running processes. This worm then creates the following registry entry to enable its automatic execution at every system startup: This worm modifies registry entries to hide files with both System and Read-only attributes. This worm drops copies of itself in all physical and removable drives. It also drops an AUTORUN.INF file to automatically execute its dropped copies when the said drives are accessed. More... |
||||
| Google The UNIX and Linux Forums |
| Forum Sponsor | ||
|
|
| Thread Tools | |
| Display Modes | |
|
|