Type: Downloader
Size: 9725 Byte
System Affected: Windows98, 95, Me, 2000, Xp, NT
Others Known As:
| Trojan-Downloader.Win32.Bagle.f (Kaspersky) |
Trojan.Lodear.D (Norton) |
Characteristics :
1) Creates the following registry keys :
◊ HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\anti_troj = %System%\anti_troj.exe
◊ HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\anti_troj = %System%\anti_troj.exe
◊ HKEY_CURRENT_USER\Software\FirstRRRun\FirstRRRun = 1
◊ HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\anti_troj = %System%\anti_troj.exe
◊ HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\anti_troj = %System%\anti_troj.exe
◊ HKEY_CURRENT_USER\Software\FirstRRRun\FirstRRRun = 1
2) Create the following files :
◊ %System%\anti_troj.exe
◊ %Windows%\exefld