|
|
Worm.P2P.Achar. Viruses Information
| Name: |
Worm.P2P.Achar. |
| Category: |
Viruses |
| Description:
|
Details
Worm.P2P.Achar.a
This is a family of harmless worms that replicate by making their copies in a Kazaa shared folder.
The worm is a Windows application (PE EXE file) written in Assembler, the worm file size is about 8K.
The worm does not install itself into the system.
To infect Kazaa shared folder the worm reads its name from system registry and copies itself to the folder with following names:
'Crack McAfee 7.exe'
'Crack Norton 3000.exe'
'Borland KeyGens.exe'
'MP3 encoder_decoderV1.8.exe'
'HackNTTools.zip .exe'
'SophosCrackAllVersion.exe'
'BitDefender.KeyGen.exe'
'Nod32Crack.exe'
'PANDA.lusers.exe'
'PANDA.AVers.lusers.exe'
The worm also tries to copy itself with the "CUCARACHA.exe" name to startup directories on remote computers, but fails because of a bug. So, it is pure P2P worm.
The worm has "copyright" text string:
-/Cucaracha- Programado por ErGrone * SANTIAGO DE CHILE |
Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 72 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win16.Klon.1177 - 42 visits
Win32.Hidra - 42 visits
Marine.500 - 35 visits
Random Viruses Pages:
Ginger Famil
Vendett
APME.Demo.62
Anni famil
I-Worm.Win32.Fason
Ambe
Daemaen Famil
Weed.408
Marzia.Demian.153
Parity.44
|
|