AnVir Software
HomeProductsScreenshotsDownloadBuy AwardsSupportForum

Virus mitglieder


Trojan Mitglieder opens a mail relay on your computer, allowing others to use it to send unsolicited commercial email to others. The Trojan also attempts to download and execute PWSteal.Ldpinch.

Mitglieder copies itself to %System%\ibot4.exe. Note: %System% is a variable. The Trojan locates the System folder and copies itself to that location. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).

Adds the value: "ssgrate.exe"="%System%\system.exe"
to the registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
so that the Trojan runs when you start Windows.

It monitors the process list and tries to termintate some antivirus programs.






© Copyright 2000-2008 AnVir Software. All Rights Reserved.