Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

BKDR_SALITY.AE

BugsAlert Home > BKDR_SALITY.AE
 
 

This backdoor program is usually dropped by PE_SALITY.AE.

Once registered, this backdoor program inserts its process in all running processes of an affected machine.

This is Trend Micro's detection for a .DLL file used by other malware programs in performing their malicious routines. One of the said routines include searching for an Internet connection by accessing a valid Microsoft Web site. If there is an Internet connection, this backdoor then attempts to download possibly malicious files from the Internet.

It opens a random port and awaits for commands, which it executes locally, from a remote malicious user.




Original Source: http://feeds.trendmicro.com/~r/MalwareTop10/~3/244102754/default5.asp

Learn more about BKDR_SALITY.AE
 
Tags: bkdr sality.ae

Related Items

      Vuln: Openfire Multiple Input Validation Vulnerabilities

      FrSIRT - Pre Job Board "Username" and "Password" SQL Injection Vulnerabilities

      Drupal Archive Module Unspecified Cross-Site Scripting

      Bugtraq: [SECURITY] [DSA 1504-1] New Linux kernel 2.6.8 packages fix several issues

      ComicShout "comic_id" SQL Injection Vulnerability

      CVE-2008-3751 (Short Url and Url Tracker Script)

      PacerCMS Multiple Vulnerabilities (XSS/SQL)

 

Pixel