Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

PE_TRATS.A-O

BugsAlert Home > PE_TRATS.A-O
 
 

This file infector may be dropped by other malware. It may be downloaded unknowingly by a user when visiting malicious Web sites.

It registers itself as a Browser Helper Object (BHO) to ensure its automatic execution every time Internet Explorer is run by creating registry keys/entries. It modifies registry entries to enable its automatic execution at every system startup.

It drops a DLL component file detected by Trend Micro as TROJ_TRATS.A which is injected into certain running processes to remain memory resident.

It infects EXE files by placing victim files between its own code and TROJ_TRATS.A then replaces the original file.

When one of infected files is executed, it drops the original victim file in the current path and executes it normally.




Original Source: http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=PE_TRATS.A-O

Learn more about PE_TRATS.A-O
 
Tags: trats.a-o

Related Items

      CVE-2008-3585 (greencart_php_shopping_cart)

      Multiple vulnerabilities in Double-Take 5.0.0.2865

      csphonebook 1.02 Remote XSS Vulnerabilitiy

      JiRo's FAQ Manager eXperience "fID" SQL Injection

      Power Audio CD Burner NCTAudioInformation2 ActiveX Control Buffer Overflow

      RedHat: Important: tomcat security update

      Microsoft DirectX SAMI File Format Name Parsing Stack Overflow Vulnerability

 

Pixel