|
Description:
This memory-resident Trojan has three main components that allow it to perform its malicious routines. The components are as follows:
- SCCHOST.EXE - which logs and saves keystrokes in the file C:\Windows\winil.ini
- SCCHOSTC.EXE - which configures an infected system as a proxy server
- SERVICES.EXE - which adds a browser helper object (BHO) to provide itself an access to an Internet session
It is compressed using UPX and runs on Windows 95, 98, ME, NT, 2000, and XP.
For additional information about this threat, see: Solution Technical Details
Description created: Apr. 10, 2004 8:14:32 AM GMT -0800
Description updated: Apr. 10, 2004 8:14:29 AM GMT -0800
Search a new malware
Tell us how we did. Take our quick survey.
|