New Muldrop Variant!Muldrop
How It Infects: Muldrop does not have a specific means of infection.
How To Avoid Infection: Do not click any unexpected links in instant messages. Do not download email attachments from unexpected sources. Do not download unknown files or files from unknown sources. If using StopSign, be sure that the On-Access Scan is installed and enabled. Scan all downloaded files with StopSign and ensure that all updates are installed from Microsoft's Windows Update.
What It Does:
Copies itself to your Windows system folder. Adds itself to your computer's registry so that the infection runs when Windows starts. Modifies your registry to disable security-related programs. StopSign is not affected by this. Modifies your host file to disable access to certain websites. Contacts to a remote server, then downloads and runs files on your computer.
Vulnerable Operating Systems: Windows 95/98/Me/NT/2000/XP
Type: Trojan Downloader
Technical Name: Trojan.Muldrop
Aliases: Backdoor.Win32.Surila.ab BackDoor-CEB.dr Trojan.Gamqowi Troj/Surila-D BDS/Surila.AB.2 Backdoor.Surila.AB Virtool.DllInjector.Elirt-1 Bck/Nethief.S Win32/Surila.NAB
|