Packed.Win32.TDSS.aa
Packed.Win32.TDSS.aa Description
Packed.Win32.TDSS.aa is a malicious trojan horse that poses a severe security risk for the compromised system. Packed.Win32.TDSS.aa has up to 15 different versions and all the alias’ have been noted as dangerous to your PC security.
Victims have reported that once this malicious virus is active it blocks all programs on the computer, even the Internet.
Type: Trojans
Aliases: Trojan.Win32.FakeSpyguard (Ikarus), Suspicious.MH690 (Symantec), Mal/TDSSPack-Q (Sophos), Mal/TDSSPack-A (Sophos).
How Can You Detect Packed.Win32.TDSS.aa?
Packed.Win32.TDSS.aa has typically the following processes in memory:
- %Temp%\e.exe
- %System%\d.exe
- %Temp%\d.exe
Packed.Win32.TDSS.aa creates the following registry entries:
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AlerterALG
- HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AlerterALG\Security
- HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AlerterALG
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AlerterALG\Security
Important Article Disclaimer
This entry was posted on 10/29/09 and is filed under Trojans.
You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

English 
Deutsch
Español
Français
Portuguese
Packed.Win32.TDSS.aa 











