Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

PE_SALITY.AL

BugsAlert Home > PE_SALITY.AL
 
 

This file infector may be downloaded from remote site(s) by other malware.

It may be dropped by other malware.

Upon execution, it drops certain files.

This file infector infects all .EXE files in the Windows folder and subfolders. It also infects all .EXE files on the affected system's root folder (usually C:\), in random subfolders, and in all removable and network drives.

This routine may cause system applications to malfunction.

A certain .DLL file is injected into all processes found running on the affected system, after which control is returned to the host file.




Original Source: http://feeds.trendmicro.com/~r/MalwareTop10/~3/168417889/default5.asp

Learn more about PE_SALITY.AL
 
Tags: sality.al

Related Items

      FrSIRT - Debian Security Update Fixes Horde Cross Site Scripting Vulnerability

      FrSIRT - Debian Security Update Fixes Kronolith Cross Site Scripting Vulnerability

      Crossday Discuz! Board PHP Code Execution Vulnerability

      CVE-2008-5197 (php-fusion)

      Microsoft Windows ASF Media Format Remote Code Execution (MS07-068)

      Fedora 9 Update: php-pear-Cache-1.5.5-1.fc9

      Freelance Auction Script "pid" SQL Injection Vulnerability

 

Pixel