Infection Channel: Dropped by other malware
This Trojan may be dropped by other malware.
It hides files, processes, and/or registry entries.
File size: Varies
File type: SYS
Memory resident: Yes
Initial samples received date: 23 Aug 2012
Payload: Modifies system registry, Modifies files
Arrival Details
This Trojan may be dropped by the following malware:
Rootkit Capabilities
This Trojan is used by other malware for its rootkit functionalities.
It hides files, processes, and/or registry entries.
NOTES:
It is dropped by WORM_MORCUT.A as %System%\drivers\ndisk.sys.
Connect with us on
| | | |