SoftwareTipsandTricks.com
Home Forums Windows 7 Security Tips
Forums

Windows 7
Windows Vista
Windows XP

Security Tips
Troubleshooting
Keyboard Shortcuts
Encyclopedia


Drivers

Internet Terms
Computer Terms

File Extensions (75)
File Extensions (15K+)

Startup Applications
Necessary Files
Useless Files
At Your Option Files
Dangerous Files
Browser Objects

DLL Files
SYS Files
INF Files
OCX Files
VXD Files

Virus Database
Virus Warnings

Easter Eggs
Tips and Tricks
Articles
Hot Downloads


Privacy Policy
Contact Us







  videodrv.exe

Name videodrv.exe

Description

I-Worm.Mimail
Mimail is an internet worm spreading via infected emails. The worm uses a built in SMTP engine.
Infected messages has the following fields:
From: admin@%fake email address% where %fake email address% is different every time.
Subject: your account %rnd str% where %rnd str% is different every time.
Body:
Hello there, I would like to inform you about important information regarding your email address. This email address will be expiring.
Please read attachment for details.
---
Best regards, Administrator
---
Attach: message.zip with "message.html" file.
This HTML file drops the FOO.EXE file (worm copy) into the "Downloaded Program Files" directory and runs it.
(To do this action the worm exploits a vulnerability in Internet Explorer: allows a Java script in the HTML file to get access to disk files without any prompts.)
Worm copies itself to the Windows directory under the name "videodrv.exe" and registers this file in the system registry autorun key:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
VideoDriver = %WinDir%\videodrv.exe
The worm also creates the following files in the Windows directory:
exe.tmp - worm in HTML file
zip.tmp - worm's HTML file in ZIP archive (method "stored" - no compression).
eml.tmp - list of emails found on infected machine
(The worm uses its own ZIP file format supporting routine.)
Use antivirus (also check How To Remove section)Startup Optimizer to remove it from startup.


Still have a problem? Ask for help at our discussion forum.



Search Dangerous Files :
 

: : Recent posts at Forums : :

Steve Alten - MEG, Books 1-5 (Meg, The Trench, Primal Waters, Hell's Aquarium, Nightstalkers) - eBooks [Isohunt.to]

Бизнес выгодн

Cheap Vintage Jerseys Sale

С двумя блочн

Adobe Photoshop CS6 13.0 Final (English Japanese) Mac Os X [Chi

My brand-new website

Matured placement

New spot

rld-fasi17

Big Black Grls!Old Fat MILF !# 5169110

Cheap Soccer Jerseys Free Shipping

Black Fat - Ebony moms boobs# 375967

Cheap Nike NFL Jerseys Wholesale

Fat Pussy BBW!Black Girls photo!# 1477877

Free grown-up galleries

Delivered full-grown galleries

Протестируй н

Порно фото. Даром зреть секс порно фотогрk

Social pictures

Прочные швед&

Последние стр

Lusty men photo blog

buying generic Septilin;ordering Septilin;Septilin overnight saturday delivery NO PRESCRIPTION

Порно фото галереи, более 500 тысяч фотограф&#

My new website

Matured site

Pictures from community networks

Renewed spot

Social pictures

Pictures from community networks




SoftwareTipsandTricks, All Rights Reserved.