Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

WORM_VB.GNV

BugsAlert Home > WORM_VB.GNV
 
 

This worm may be dropped by other malware. It may be downloaded unknowingly by a user when visiting malicious Web sites.

It drops copies of itself. It creates registry entries to enable its automatic execution at every system startup.

It disables Task Manager and Registry Editor. It does the said routine to avoid termination from the affected system's memory. It modifies registry entries to hide files with both System and Read-only attributes. It creates registry key(s)/entry(ies) as part of its installation routine.

It drops copies of itself in all removable drives. It drops an AUTORUN.INF file to automatically execute dropped copies when the drives are accessed.

It modifies the Internet Explorer (IE) home page to point to a certain Web site.




Original Source: http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_VB.GNV

Learn more about WORM_VB.GNV
 
Tags: worm vb.gnv

Related Items

      Trojan.Win32.StartPage.dz

      Vuln: Ruby Multiple Libraries SSL Multiple Insecure Certificate Validation Weaknesses

      FrSIRT - Nominum CNS and Vantio DNS Cache Poisoning Vulnerability

      CVE-2008-5113 (wordpress)

      CVE-2008-4246 (denora_irc_stats)

      Debian Security Update Fixes Kernel Local Security Bypass and DoS

      Vuln: Smarty Template Engine 'regex_replace' Template Security Bypass Vulnerability

 

Pixel