Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

WORM_ONLINEG.DSO

BugsAlert Home > WORM_ONLINEG.DSO
 
 

This worm may be dropped by other malware. It may be downloaded unknowingly by a user when visiting malicious Web sites.

Upon execution, this worm drops several component files, which Trend Micro detects as WORM_AUTORUN.ZU, TSPY_ONLINEG.NNW, WORM_AUTORUN.ZQ, WORM_NSANTI.FY.

This worm creates registry entry to enable its automatic execution at every system startup. It also modifies registry entries to hide files with both System and Read-only attributes.

It deletes itself after execution.

This worm drops copies of itself in all physical and removable drives. It also drops an AUTORUN.INF file to automatically execute its dropped copies when the said drives are accessed.

This worm downloads an updated copy of itself from certain URLs.




Original Source: http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_ONLINEG.DSO

Learn more about WORM_ONLINEG.DSO
 
Tags: worm onlineg.dso

Related Items

      HP-UX "rpc.yppasswdd" Unspecified Remote Denial of Service Issue

      PHP-Nuke Module League (team&tid) XSS Vulnerability

      WORM_SOHANAD.BO

      CVE-2008-1205 (Solaris)

      CVE-2007-6045 (DB2 Universal Database)

      Bugtraq: PHP-Nuke Module League (team&tid) XSS Vulnerability

      Pro Chat Rooms 3.0.3 (guid) SQL Injection Vulnerabilities

 

Pixel