Trojan.Win32.KillAV.gj or KillAV.gj is a trojan that causes a message box to appear. File:KillAV.gj.Rootkit.png The easy way to tell this is fake is that it's title is Project1 and that it says "Scaning for root kit" instead of "Scanning for Root-kit..." Its also easy to see that it looks like a simple notepad joke virus but it creates a batch file in the C:\ directory called "Update.bat". The trojan also terminates the following processes. It also registers itself into the system registry. [HKLM\Software\Microsoft\Windows\CurrentVersion\Run] "Start"="c:\Update.bat" File:KillAV.gj.RootkitInProgress.png
Attributes | Values |
---|---|
rdf:type | |
rdfs:label |
|
rdfs:comment |
|
dcterms:subject | |
dbkwik:malware/pro...iPageUsesTemplate | |
Date |
|
Origin |
|
Platform |
|
Name |
|
Type |
|
pl |
|
filetype |
|
Family | |
Creator |
|
Size |
|
abstract |
|