On Wed, 29 Jul 2009 21:47:12 -0400, "FromTheRafters"
<(E-Mail Removed)> wrote:
>What does it do?
It makes all your system files hidden, itself included. It
copies itself to the windows/system32 folder with another name. It
alters your registry settings, opening your shares. It attempts to
access an external website (no- I can't remember which, I had a lot of
trouble removing it, but I'll send you a copy if you really want to
suffer it). It puts a file called Kuh or something similar on every
hard drive.
It messes up the shell extension. And , of course, it makes an
autorun.inf and copies itself on any pendrive inserted in the PC.
It's over half a megabyte of executable !!!
Nasty little (?) thing.
[]'s
I suspected it because my pendrive took a little longer to be
read. You can see it easily with a dir /a from a command window. that
was how I knew I was infected.
>
>Those results indicate many different things - some say trojan, some say
>virus, some say worm, some say packed generic malware...
Bit of each. malware would be the best description.
>
|