akira
23-08-2008, 10:35 PM
**Hidden Content: Check the thread to see hidden data.**
Win32.Worm.Autoit.AL
Spreading: low
Damage: medium
Size: 212 Kb
Discovered: 2008 Jul 24
SYMPTOMS:
The presence of
%programfiles%\FlashGuard\FlashGuard.exe
%windrive%\FlashGuard\ReadMe.txt
%windrive%\FlashGuard\FlashGuard.exe
The presence of autorun.inf on removable drives that contains
[autorun]
open=System\Security\DriveGuard.exe -run
shell\Open=&Open
shell\Open\Command=System\Security\DriveGuard.exe -run
shell\Explore=&Explore
shell\Explore\Command=System\Security\DriveGuard.exe -run
TECHNICAL DESCRIPTION:
**Hidden Content: Check the thread to see hidden data.**
Win32.Worm.Autoit.AL
Spreading: low
Damage: medium
Size: 212 Kb
Discovered: 2008 Jul 24
SYMPTOMS:
The presence of
%programfiles%\FlashGuard\FlashGuard.exe
%windrive%\FlashGuard\ReadMe.txt
%windrive%\FlashGuard\FlashGuard.exe
The presence of autorun.inf on removable drives that contains
[autorun]
open=System\Security\DriveGuard.exe -run
shell\Open=&Open
shell\Open\Command=System\Security\DriveGuard.exe -run
shell\Explore=&Explore
shell\Explore\Command=System\Security\DriveGuard.exe -run
TECHNICAL DESCRIPTION:
**Hidden Content: Check the thread to see hidden data.**