









 |
W32/AutoIt.K Trojan
| Name |
W32/AutoIt.K Trojan |
| Aliases |
W32.SillyFDC, Trojan-Dropper.Win32.Autoit.k |
| Updated on |
April 20, 2009 |
Virus Information - W32/AutoIt.K Trojan:
W32/AutoIt.K is a trojan. The trojan will infect Windows systems.
Upon execution, the trojan drops the following files in Documents and Settings\Default User\Local Settings\Application Data\Microsoft\CD Burning folder:
KHATRA.exe
AUTORUN.inF
Default User.exe
New Folder(3).exe
It also drops the following files:
Xplorer.exein Windows folder
KHATARNAKH.exein Windows folder
KHATRA.exein WINDOWS\system32 folder and root of Windows installed drives
gHost.exe in WINDOWS\system folder
Autoplay.inF in WINDOWS\inf folder
At1.job in WINDOWS\Tasks folder
The trojan modifies registry at the following location:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run

|