Selected viruses, spyware, and other threats: sorted alphabetically
Win32/Gaia.A
|
Short description
The trojan serves as a backdoor. It can be controlled remotely.Installation
When executed, the trojan copies itself into the following location:- %userprofile%Application DataAdobeacrotry.exe
- [HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersion
Run]
"Adobe Assistant" = "%userprofile%Application
DataAdobeacrotry.exe"
- %windir%taskstemp.gif
Other information
The trojan acquires data and commands from a remote computer or the Internet.The trojan contains a list of (1) URLs. The HTTP protocol is used.
It can execute the following operations:
- run executable files
- terminate running processes
- download files from a remote computer and/or the Internet
- send files to a remote computer
- send the list of disk devices and their type to a remote
computer
- list of running processes
- computer name
