trojan downloader: Trojan-Downloader.Win32.Small.b
Hazard level: Medium
virus Description
The sample is a downloader program ,its size is “38,400 bytes”, icon “
“, Virus extension” exe “, mainly through the” Download Software Download “,” file bundle “,” Page Trojan “and other modes to spread, the main purpose of the virus is to download malware to the user’s computer to run.
After the user’s computer was infected, will appear Slow computer and network operations, processes and services, an unknown phenomenon.
Infection of the operating system
Windows 2000/Windows XP / Windows 2003/Windows Vista / Windows 7
Transmission
Document binding, pages Trojan, download software download
Manual Solution:
1, manually delete the following files:
% SystemRoot% \ system32 \ eeaea.exe
2, manually delete the following Registry:
HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ Services \ hoddos
Variable declaration:
% SystemDriver% partition where the operating system, typically “C: \”
% SystemRoot% WINDODWS directory, usually “C: \ Windows”
% Documents and Settings% user documentation directory, usually “C: \ Documents and Settings”
% Temp% temp folder, usually “C: \ Documents and Settings \ current user name \ Local Settings \ Temp”
% ProgramFiles% system program default installation directory, typically: “C: \ ProgramFiles”
The virus creates a file:
% SystemRoot% \ system32 \ eeaea.exe
Virus to create the registry:
HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ Services \ hzddos
Great post.Thanks for sharing such a useful information with us.
I relish, result in I discovered just what I was having a look for. You have ended my four day lengthy hunt! God Bless you man. Have a nice day. Bye
You’re in reality a just right webmaster. The web site loading pace is incredible. It sort of feels that you are doing any unique trick. In addition, The contents are masterpiece. you have performed a magnificent job on this topic!
When I initially commented I clicked the “Notify me when new comments are added” checkbox and now each time a comment is added I get four e-mails with the same comment. Is there any way you can remove me from that service? Thank you!
What…
I can righteously say that I didn’t get it….
Got a kick or two…
I have fancied your previous items, but this one is not your finest….
Not exactly trending…
Not as newsworthy as Khan, but applauded anyway….
Stop Now…
Please do not coerce me to peruse that post again have mercy….
Go no further…
Please do not make me to read that story ever again have mercy….
[..] Aumentar Fans en Facebook [..]…
Comprar Fans en Facebook ……
Best Ways To Find Optometrist…
[...]We all know that skills come pretty handy when doing something new and even more it if is important to us.[...]…
Business is a combination of war and sport….
hello there and thank you for your information – I’ve certainly picked up something new from right here. I did however expertise some technical issues using this website, since I experienced to reload the site a lot of times previous to I could get it …
yenibinet…
this was a sheer entertaining read….
Informative and precise…
Its difficult to find informative and accurate information but here I found…
kameralı chat…
kameralı sohbet…
2011…
This is a very good tips especially to those new to blogosphere, brief and accurate information… Thanks for sharing this one. A must read article….
Kuzey güney son bölüm izle…
Kuzey güney yeni bölüm izle…