New varieties of Grey Pigeon in computer virus Center recently ravaged the internet

Source: Internet
Author: User
Keywords Xinhua News agency computer viruses
Tags agency computer computer users computer virus computer viruses internet internet + internet monitoring
Absrtact: National Computer virus Center reminds: according to Xinhua National Computer virus Emergency treatment center through the Internet monitoring found that a lot of computer users recently by the Gray Pigeon new variant (Backdoor_greypigeon.asiy) threat to remind users beware.

National Computer Virus Center reminds:

According to the Xinhua news agency, the National Computer Virus Emergency treatment center through the Internet monitoring found that many computer users recently by the "Gray Pigeon" new variant (Backdoor_greypigeon.asiy) threat to remind users beware.

Experts say the variant is a reverse-connected backdoor, which means that a reverse connection can bypass network firewall monitoring. It causes the infected operating system to actively connect to the remote Web site specified by the malicious attacker, obtaining the client's IP address. A malicious attacker manipulates the client and the infected operating system is the server. Subsequently, the infected operating system listens for the instructions of a malicious attacker to achieve the purpose of remote control.

After the variant runs, it copies itself to the system directory of the infected operating system and sets its properties to be hidden, system, read-only. At the same time, it creates some system services and modifies the registry to enable it to be started with the operating system. It also creates a new browser IE process in the infected operating system, sets its properties to hidden, and inserts the virus file itself into the process.

In addition, through the "gray pigeon" in the infected operating system background record user keyboard operation, a malicious attacker may arbitrarily steal personal and local system information from the computer's user system and send it to a malicious attacker, which will eventually result in the user's computer system being remotely controlled and the files being deleted maliciously. System automatic Remote download upload malicious program files.


Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.