"Shutdown expert" automatically shut down the computer to initiate an ARP attack

Source: Internet
Author: User
Tags file system win32

"Off the Master" variant Cy (WIN32.TROJ.SHUTDOWNER.CY) is a specially forced to shut down the user's computer system Trojan virus.

"West Tour Thieves" Variant nn (WIN32.PSWTROJ.ONLINEGAMES.NN) a steal network game "dream West Tour" game account Trojan virus.

first, "Shut the machine expert" variant CY (WIN32.TROJ.SHUTDOWNER.CY) Threat level: ★

The virus is a malicious program that specifically enforces the shutdown of a user's computer system, after running, it will automatically put the computer into the shutdown state, the user's computer to the normal operation of the problem, because the computer system has not been properly shut down, may cause a large number of file data loss and file system errors and so on.

After the virus runs, it releases NetMonInstaller.exe and npf_mgm.exe virus files, sends ARP attack packets and infects other computers in the LAN, causing no internet access. Automatically connect to the HXXP://DOWN.XXXX.CN/XXX site for virus downloads.

second, "West Tour Big Theft" Variant NN (WIN32.PSWTROJ.ONLINEGAMES.NN) threat level: ★

The virus is also a cyber-game thieves, it is similar to the general theft Trojan Horse, it will be waiting for injection into the network game "dream West" process, by reading the process memory way, get the game account and password, and send it to the Trojan growers, resulting in the loss of the user's virtual property.

After the virus runs, it releases the LYLOADER.EXE and LYMANGR.DLL virus files, modifies the registry, realizes the boot automatically, steals valid information, and sends it to hxxp://www.zitian**.cn/***1/po**2** 5asp.asp and many other sites.

Jinshan Anti-virus engineer proposal

1. With the development of computer technology, more viruses will accompany, in order to protect your system and personal information security, please often update anti-virus software virus library, to prevent the intrusion of viruses.

2. Entering the summer, play online games, use QQ chat users will be increased, so all kinds of Trojan will increase, it is recommended that users must develop a good network habits, timely upgrade anti-virus software, open firewalls and real-time monitoring and other functions, cut off the virus transmission, not to the opportunity to virus.



Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.