Home Forums Windows 7 Security Tips

Windows 7
Windows Vista
Windows XP

Security Tips
Keyboard Shortcuts


Internet Terms
Computer Terms

File Extensions (75)
File Extensions (15K+)

Startup Applications
Necessary Files
Useless Files
At Your Option Files
Dangerous Files
Browser Objects

DLL Files
SYS Files
INF Files
OCX Files
VXD Files

Virus Database
Virus Warnings

Easter Eggs
Tips and Tricks
Hot Downloads

Privacy Policy
Contact Us




W32/Rbot-FQ is a worm which attempts to spread to remote network shares.
It also contains backdoor Trojan functionality, allowing unauthorised remote access to the infected computer via IRC channels while running in the background as a service process.

Copies itself to the file MSNMSGR.EXE in the Windows system folder and creates entries at the following locations in the registry so as to run itself on system startup, resetting them every minute:

It sets the following registry entries every 2 minutes:
HKLM\SOFTWARE\Microsoft\Ole\EnableDCOM = "N"
HKLM\SYSTEM\CurrentControlSet\Control\Lsa\restrictanonymous = "1"

Attempts to delete network shares on the host computer every 2 minutes.
Attempts to terminate processes relating to some files.

Automatic Removal: Use antivirus (also check How To Remove section)Startup Optimizer to remove it from startup.

Still have a problem? Ask for help at our discussion forum.

Search Dangerous Files :

: : Recent posts at Forums : :

My new website

Mod Job

New install

где купить ам&

Recent plat

стеклянные пе

Public pictures

Mature site

Mature purlieus

скачать hlds для с

Free adult galleries

Free galleries

Adult placement

Daily updated photo blog with fiery men

Adult galleries

Proposal servant moved

movie picssearch sex

My supplementary website

Renewed spot

Mod Project

Adult galleries -ИжевскГ

Fresh domestic bellhop after project

Latest install

My self-controlled project

Pictures from social networks

проститутки и

Public pictures

Mod Job

Full-grown galleries

SoftwareTipsandTricks, All Rights Reserved.