|
|
I-Worm.Acte Viruses Information
| Name: |
I-Worm.Acte |
| Category: |
Viruses |
| Description:
|
Details
I-Worm.Actem
Actem is a worm virus spreading via the Internet as an infected email attachment. The worm itself is a Windows PE EXE file about 61Kb in size, written in Visual Basic.
The infected messages body is empty.
The email Subject is:
"Try this, pretty cool"
There are two files attached to the email. One is a copy of the worm:
ActiveM.exe
While the other is a text file:
list.txt
Actem activates from the infected email only if a user clicks on the attached file. If activated the worm installs itself into the system and displays false messages.
The worm hides itself as an "Active Mouse" application and displays several false messages and menus when the infected file is run.
Actem shows this "active mouse" dialog window:
Other false messages displayed by Actem if executed:
Actem does not install itself to the system and is not active after having run - unless a user clicks on the infected attachment again.
To send out infected messages Actem uses MS Outlook to send messages to all addresses found in the Outlook address book. |
Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits
Random Viruses Pages:
MTZ.262
Macro.Word.Fhd.
No444.47
Win95.Powerfu
Macro.Word.Wazz
T_Power famil
Macro.Word.Hitma
Ocean.257
BAT.PolyBa
Patras.197
|
|