W32/AutoIt.AA Trojan is the Top virus or trojan in the web now.
W32/AutoIt.AA is a Trojan. The Trojan will infect Windows systems.
Upon execution, the trojan drops the following files in the Windows System folder:
SSVICHOSST.exe
autorun.ini
setting.ini
nhatquanglan18.exe
SCVHSOT.exe
test1.exe
It also drops SSVICHOSST.exe in Windows folder.
The trojan schedules a task to execute SSVICHOSST.exe once in a week.
The trojan creates registry at the following location to load itself during each startup;
HKEY_USERS\S-1-5-21-606747145-602162358-682003330-1000\Software\Microsoft\Windows\CurrentVersion\Run
It also modifies registry at the following location to load itself along with explorer.exe.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell
This trojan first appeared on Mar 14, 2008.
Other names of W32/AutoIt.AA Trojan:
This trojan is also known as Trojan-Downloader.Win32.AutoIt.aa, Win32.Sohanad.R, W32/Sohanat.CM.worm .
Check for the solution
Related:
Windows Computer Software Mobiles Tips Virus Trojan Manual Removal Informations
Enter your Keyword, Search here,
Virus Information W32/AutoIt.AA Trojan
Tags:
autoit
,
automatic shutdown
,
Autorun
,
Clean
,
Computer
,
Trojans
,
Virus
,
W32/AutoIt.AA Trojan
,
Windows
Subscribe to:
Post Comments
(
Atom
)
hooo... i got this stupid virus and now some remedies .. thank you..
ReplyDelete