Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

WORM_RUSSOTURI.H

BugsAlert Home > WORM_RUSSOTURI.H
 
 

This worm may be dropped by other malware. It may also be downloaded unknowingly by a user when visiting malicious Web sites.

This worm creates a registry entry to enable its automatic execution at every system startup.

Once this worm is executed, it copies itself to all folders it locates in the system. It uses the name of the folder as its file name. It then proceeds to delete all files when the system date is either December 13, or any Friday that falls on the 13th day of any month.

This worm drops copies of itself in all physical and removable drives.




Original Source: http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_RUSSOTURI.H

Learn more about WORM_RUSSOTURI.H
 
Tags: worm russoturi.h

Related Items

      CVE-2008-1081 (Opera)

      Security Configuration Guides

      Securing Your Network Premises With Endian

      Vuln: Microsoft Windows Internet Printing Service Integer Overflow Vulnerability

      Bugtraq: TCP/IP security vulnerability disclosed

      VUPEN - Redhat Security Update Fixes Kernel Security Bypass and DoS Issues

      Vuln: TinyMCE 'menuID' Parameter SQL Injection Vulnerability

 

Pixel