Need help? Ask the community or hire an expert.
Go to Avira Answers
Virus:VBS/Autorun.juy
Date discovered:04/07/2013
Type:Trojan
In the wild:No
Reported Infections:Low
Distribution Potential:Low
Damage Potential:Low
File size:~70.210 Bytes
MD5 checksum:b560ab0e59274ca4aea3f6e47b77f320
VDF version:7.11.88.192 - Thursday, July 4, 2013
IVDF version:7.11.88.192 - Thursday, July 4, 2013

 General Method of propagation:
   • No own spreading routine


Aliases:
   •  Symantec: VBS.Downloader.Trojan
   •  Mcafee: VBS/Downloader-CVR
   •  Kaspersky: Worm.VBS.Agent.by


Platforms / OS:
   • Windows 98
   • Windows 98 SE
   • Windows NT
   • Windows ME
   • Windows 2000
   • Windows XP
   • Windows 2003
    Windows Vista
    Windows Server 2008
    Windows 7


Side effects:
   • Downloads a malicious file
   • Registry modification
   • Steals information

 Registry The following registry key is added in order to run the process after reboot:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\updatee
   • %TEMPDIR%\help.vbs

 Miscellaneous Accesses internet resources:
   • http://g**********-plus.redirectme.net

Description inserted by Jan-Eric Herting on Saturday, July 6, 2013
Description updated by Jan-Eric Herting on Saturday, July 6, 2013

Back . . . .