First posted on 06 April 2007.
Source: SecurityHome
Trojan-Downloader:W32/Agent.BCD is also known as Trojan-Downloader.Win32.Agent.bcd, Adware/Borlander, DR/Dldr.Agent.bcd.1, Trojan.Downloader.ARB, Trojan.Downloader.Agent.ARK.
Trojan-Downloader:W32/Agent.BCD is a downloader for Adware programs. This malware also has rootkit functionality.
Trojan-Downloader:W32/Agent.BCD is a generic detection for malware that downloads and installs Adware programs such as Adware Boran.
Trojan-Downloader:W32/Agent.BCD may drop .DLL , .SYS or .EXE files as its component. It typically drops its components in the following paths:
- Windows Temporary folder
- Windows Directory
- Windows System Directory
The dropped .SYS file is driver that is used to hide some of the registry entries added by the malware. This is done hooking several APIs related to registry operations.
Last update 06 April 2007
TOP