W32/Darce.A

Download VIRUSfighter NOW
W32/Darce.A Destructivity: Spreading: Overall risk:
  
• Detected by virus detection files published: 2/6/2005 • Type: Trojan
• Virus characteristics first published: 2/6/2005 • Spreading mechanism:
• Virus characteristics latest update: 2/6/2005 • Overall risk: Low
• Infection type: Microsoft Windows 95/98/98 SE/ME/NT 4/2000/XP/2003/Vista  

Virus type Spreading
mechanism
Destructivity
and payload
Additional
descriptions
Detection
and removal
  • Creates a backdoor which listens for connections on port 53 (TCP).
  • Prevents the following services from running:
    • Application Layer Gateway Service (alg.exe)
    • Windows Firewall/Internet Connection Sharing (ICS) (SharedAccess)
    • GFI LANguard N.S.S. Scheduled Scans Service (sscansvc.exe)
  • Creates an account in the administrators group called HelpAssistant, with the password Cukotka5".
  • Shares c:\ as RPC$.
# - A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z
To protect and serve, VirusFighter