|
|
|
|
|
|
|
Trojan.DownLoader.970 Virus |
malware Type: virus
Discovered: 2006-08-30
Added: 2006-08-31
Threat ID: 149341 |
trojan.Downloader.970 is a virus infection that replaces a legitimate Windows file (telnet.exe) with a copy of itself. Once the computer restarts, Windows may replace telnet.exe with a legitimate copy, but by then the trojan has already downloaded itself to other locations on the system. This trojan downloads other virus infections.
|
Risk Description:
Ease of Removing Trojan.DownLoader.970
Uses running processes
Consistent file contents
Consistently named
Creates new registry entries with consistent data
Privacy Risks/Security Changes of Trojan.DownLoader.970
Mimics legitimate file names
Damage/Intrusion/Annoyance of Trojan.DownLoader.970
Deletes application files
Downloads other threats
Creates new files
Significantly slows down the computer
Autoruns at startup without an option to be disabled
Propagation/Saturation of Trojan.DownLoader.970
Infects by Active-X Control |
alias(s) of Trojan.DownLoader.970
TR/Dldr.Small.VN
W32/Downloader.EMQ
Win32:Trojan-gen. {UPX!}
Downloader.Small.13.X
Trojan.Downloader.Delf.CB
Trojan.Downloader.Small-234
Win32/SillyDL.KF!Trojan
Win32/SillyDl.KF
Downloader.Delf.cb
W32/Delf.CB!tr
security risk named W32/Downloader.EMQ
Trojan-Downloader.Win32.Small.VN
Trojan-Downloader.Win32.Delf.cb
Downloader-OV
Trojan.Delf (threat-c)
Win32/TrojanDownloader.Delf.CB.gen
W32/DLoader.FPO
Trj/Downloader.BTV
Trojan/Downloader(2)
TrojanDownloader.Win32.Small.FB45 |
Further details about Trojan.DownLoader.970 may be available at our Malware Research Center
|
|
|
|
|
|