Besoin d’aide ? Fais appel à la communauté ou embauche un spécialiste.
Aller à Avira Answers
Virus:W32/Sality
Date discovered:07/05/2008
Type:File infector
In the wild:Yes
Reported Infections:Low to medium
Distribution Potential:Medium
Damage Potential:Medium to high
Static file:No
Engine version:8.01.00.39

 General Methods of propagation:
   • Infects files
   • Local network
   • Mapped network drives


Platforms / OS:
   • Windows 95
   • Windows 98
   • Windows 98 SE
   • Windows NT
   • Windows ME
   • Windows 2000
   • Windows XP
   • Windows 2003


Side effects:
   • Infects files

 Special detection  W32/Sality

Description:
A generic detection routine designed to detect common family characteristics shared in several variants.

This special detection routine was developed in order to detect unknown variants and will be enhanced continuously.


Version history:
The following engine updates were released in order to enhance detection:

   •  7.08.00.14/8.01.00.39   ( 07/05/2008 )
   •  8.01.00.55   ( 06/06/2008 )
   •  7.08.00.59/8.01.00.59   ( 20/06/2008 )
   •  7.08.01.15/8.01.01.15   ( 31/07/2008 )
   •  7.09.00.70/8.02.00.70   ( 30/01/2009 )
   •  7.09.00.83/8.02.00.83   ( 17/02/2009 )
   •  7.09.00.138/8.02.00.138   ( 03/04/2009 )
   •  7.09.00.155/8.02.00.155   ( 23/04/2009 )
   •  7.09.00.166/8.02.00.166   ( 08/05/2009 )
   •  7.09.02.18/8.02.02.18   ( 17/06/2010 )

 File infection Infector type:

Appender - The virus main code is added at the end of the infected file.
– A section is added to the infected file.

Self Modification:

Encrypted - The virus code inside the infected file is encrypted.


The following files are infected:

Files in any the following paths and all their subpaths:
   • %network shares%

Description insérée par Andrei Ivanes le jeudi 1 juillet 2010
Description mise à jour par Andrei Ivanes le jeudi 1 juillet 2010

Retour . . . .
https:// Cet écran est crypté pour votre sécurité.