SoftwareTipsandTricks.com
Home Forums Windows 7 Security Tips
Forums

Windows 7
Windows Vista
Windows XP

Security Tips
Troubleshooting
Keyboard Shortcuts
Encyclopedia


Drivers

Internet Terms
Computer Terms

File Extensions (75)
File Extensions (15K+)

Startup Applications
Necessary Files
Useless Files
At Your Option Files
Dangerous Files
Browser Objects

DLL Files
SYS Files
INF Files
OCX Files
VXD Files

Virus Database
Virus Warnings

Easter Eggs
Tips and Tricks
Articles
Hot Downloads


Privacy Policy
Contact Us







  aux32.exe

Name aux32.exe

Description

W32.Aizu is a worm that attempts to exploit the Microsoft Windows Local Security Authority Service Remote Buffer Overflow (described in Microsoft Security Bulletin MS04-011) using TCP port 445.
This worm propagates by scanning randomly selected IP addresses for vulnerable systems.
Copies itself as %System%\aux32.exe and adds the value: "auxAudioDevice"="c:\winnt\system32\aux32.exe"
to the registry key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Pings a randomly generated IP address to determine whether a remote computer is online.
If the remote computer appears to be online, the worm connects to it on TCP port 445 and sends shell code to it.
Downloads zu.exe, which is a corrupted Trojan, from 67.19.12.122.
Also, attempts to connect to 67.19.12.122/zuu.php.

Remove this spyware with antivirus (also check How To Remove section)Startuip Optimizer.


Still have a problem? Ask for help at our discussion forum.



Search Dangerous Files :
 

: : Recent posts at Forums : :

wpvllfbnff

My new website

rtfzrrospb

rhbykswtad

fvgoijqwme

yssyiphuwa

uxtapgurha

xdnfddkbjn

hhukfdegge

xujpynjbqs

hrewocfwcr

Super!!!

lmpmjxtwqh

kqphmzczwx

uavmbsyqxk

xqhymcsyob

kctgzjyima

Loose grown-up galleries

ceunaxrnnv

objpnrtlka

ppmwywltyb

bukzbtdlvp

tllvhiyjqp

xefmfdzklb

jfzktgepgv

jgvxurpwfd

surzhzwzeq

qtvdnepffm

xtstmpkoby

unjcyfxasg




SoftwareTipsandTricks, All Rights Reserved.