This Trojan downloads other files via the Internet and launches them for execution on the victim machine. The program is an HTML page which contains Java Script scenarios. It is 1432 bytes in size.
This Trojan downloads other files via the Internet and launches them for execution on the victim machine. The program is an HTML page which contains Java Script scenarios. It is 1432 bytes in size.
This malicious program is a Trojan. It is a Windows PE EXE file. It is 118103 bytes in size.
Installation
The Trojan copies its executable file to the Windows system directory:
%System%\kavo.exe
In order to ensure that the Trojan is launched automatically each time the system is restarted, the...
This malicious program is a Trojan. It is a Windows PE EXE file. It is 123873 bytes in size.
Installation
The Trojan copies its executable file to the Windows system directory:
%System%\amvo.exe
In order to ensure that the Trojan is launched automatically each time the system is restarted, the...
This Trojan downloads another program via the Internet and launches it on the victim machine without the user’s knowledge or consent. It is a Windows PE EXE file. The size of infected files can range from 18KB to 47KB.
This Trojan downloads another program via the Internet and launches it on the victim machine without the user’s knowledge or consent. It is a Windows PE EXE file. It is 79360 bytes in size. It is written in C++.
Installation
In order to ensure that the Trojan is launched automatically each...
This Trojan has a malicious payload. It is a Windows PE EXE file. It is 22016 bytes in size.
Installation
In order to ensure that the Trojan is launched automatically each time the system is booted, the Trojan adds a link to its executable file in the system registry:...
This file virus is a Windows PE EXE file. The file is 380 416 bytes in size. It is written in Delphi.
Installation
When launched, the virus copies its executable file as follows:
%System%\config\csrss.exe
%WinDir%\media\arona.exe
It also creates the following file:
%System%\logon.bat
When this...
This worm spreads via the Internet as an attachment to infected messages. It sends itself to email addresses harvested from the victim machine.
The worm itself is a Windows PE EXE file written in Visual Basic. The size of the infected file can vary significantly. The functionality described below...
This parasitic memory resident virus is functionally identical to Win32.Parite.a. It differs from Parite.a only in the key that it creates in the system registry:
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\PINF]