Sysid


Name: Sysid
Aliases: I-Worm.Sysid, Troj_Personal_ID, W32/Sysid,
Ports:
Files: Winver.vbs - Sysid.exe - and 200 other possible names. -198,656 bytes bytes
Created: 2000
Requires:
Actions: Worm / Mail trojan
The worm is packed by the Aspack PE EXE compression utility. Itleaves a hidden copy of itself in Windows memory. Mail addresses pickedrandomly from the address book.
Versions:
Registers: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\
Notes: Works on Windows, together with MS Outlook Express.
Country: written in the US
Program: Written in Delphi.

© Copyright von Braun Consultants. This information may include technical inaccuracies or typographical errors. If you have any questions or further information about the actual trojan above, please contact Joakim von Braun at <joakim.von.braun@risab.se>