Silver


Name: Silver
Aliases: I-Worm.Silver,
Ports:
Files: Silver.exe - Silver.vxd - Naked.jpg.exe - Naked.jpg.scr -
Created:
Requires:
Actions: Worm / IRC trojan / Mail trojan
Silver tries to terminate active antivirus software and delete files belonging to them.
Versions:
Registers: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\ HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\ HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices\ HKEY_USERS\Software\Microsoft\Windows\CurrentVersion\Run\ HKEY_CLASSES_ROOT\AIFF FILE\shell\open\command HKEY_CLASSES_ROOT\AIFFFILE\shell\play\command HKEY_CLASSES_ROOT\ASFFILE\shell\op en\command
Notes: Works on Windows, together with Eudora, mailprograms using MAPI,mIRC or Pirch.
Country:
Program: Written in Delphi.

© Copyright von Braun Consultants. This information may include technical inaccuracies or typographical errors. If you have any questions or further information about the actual trojan above, please contact Joakim von Braun at <joakim.von.braun@risab.se>