Win32.Idtsys.A( N/A )
SYMPTOMS: - Presence of the file- Windows executable files increase in size by approximately 37 KBytes TECHNICAL DESCRIPTION: Once an infected file is executed, the fileThe virus searches in all the folders sequentially, for windows executable files with GUI (graphic user interface) and it infects 10 executable files from the current folder then waits/sleeps for a number of seconds (0-30), then infects another set of 10 files and then waits and so on. It has backdoor capabilities, uses socket routines and listens/sends commands and informations (as the Windows type and version) on the port 1863. Removal instructions: - manual removal: delete all infected files- automatic removal: let BitDefender disinfect/delete infected files. ANALYZED BY: Patrick VicolBitDefender Virus Researcher |