TROJ_KILLAV.QB |
|
| BugsAlert Home > TROJ_KILLAV.QB | |
|
This Trojan may be installed manually by a user. It may be downloaded unknowingly by a user when visiting malicious Web sites. It drops copies of itself. It drops files/components, one of which is detected by Trend Micro as TROJ_KILLAV.SM. It is injected into processes running in memory. It registers itself as a system service to ensure its automatic execution at every system startup. It does this by creating registry keys/entries. It accesses Web sites to download file(s). As a result, malicious routines of the downloaded files are exhibited on the affected system. It saves the downloaded files using certain file names. Trend Micro detects these files as the following:
It terminates certain processes, if found running in memory. Original Source: http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=TROJ_KILLAV.QB Learn more about TROJ_KILLAV.QB |
|
| Tags: troj killav.qb | |
Related Items |
|
|
CVE-2008-5056 (triolive)
|
|
|
RealPlayer Unspecified Data Processing Buffer Overflow Vulnerability
|
|
|
i.Scribe Format String Vulnerability
|
|
|
Slackware: python
|
|
|
Bugtraq: rPSA-2008-0278-1 tshark wireshark
|
|
|
Debian: New cupsys packages fix multiple vulnerabilities
|
|
|
EfesTECH Video "catID" SQL Injection Vulnerability
|
|