Language
English
Español
Francais
COMPANY
|
CONTACT
|
CAREERS
SEARCH
SMB
ISP
EDU
SOHO
Partnership
Anti Virus Solutions
Home
AVIRA Threats Glossary
BDS/Agent.ktp
------ choose product ------
AVIRA Desktop Family
AVIRA Desktop for Windows
AVIRA Desktop for Unix
AVIRA MailServer Family
AVIRA MailGate
AVIRA MailGate for Exim
AVIRA MailGate for Postfix
AVIRA for Sendmail-Milter
AVIRA Proxy Server Family
AVIRA WebGate
AVIRA File Server Family
AVIRA for Windows Server
AVIRA for Unix Server
AVIRA Tools
AVIRA Security Management Center
AVIRA Desktop for Windows Update Package
AVIRA Removal Tool for Windows
AVIRA Webmin Remote Panel
AVIRA Intranet Mirror for Windows v 1.0
AVIRA Intranet Mirror for Unix v 1.0
TKAVIRA
Press Center
Partners
Antivirus Products
Downloads
Support
Register
Threats Info
Mailing Lists
Current VDF update
VDF History
Get Desktop Update
BDS/Agent.ktp - Backdoor Server
See also
Summary
Full description
Statistics
Rate this information
Worthless
Excellent
Virus:
BDS/Agent.ktp
Date discovered:
24/06/2008
Type:
Backdoor Server
In the wild:
Yes
Reported Infections:
Low
Distribution Potential:
Low
Damage Potential:
Medium
Static file:
Yes
File size:
2.169.600 Bytes
MD5 checksum:
b2b111bdea64a2a54e20371dc8cee753
IVDF version:
7.00.05.03
General
Method of propagation:
• No own spreading routine
Aliases:
• Symantec: Backdoor.Graybird
• Kaspersky: Backdoor.Win32.Agent.ktp
• F-Secure: Backdoor.Win32.Agent.ktp
• Panda: Trj/Multijoiner.A
Platforms / OS:
• Windows 95
• Windows 98
• Windows 98 SE
• Windows NT
• Windows ME
• Windows 2000
• Windows XP
• Windows 2003
Side effects:
• Drops a file
• Drops a malicious file
Files
The following files are created:
–
%TEMPDIR%
\install_flash_player_active.exe Furthermore it gets executed after it was fully created. Further investigation pointed out that this file is malware, too. Detected as: TR/Dldr.Losabel.WE
–
%TEMPDIR%
\install_flash_player_active_x.exe Furthermore it gets executed after it was fully created.
File details
Runtime packer:
In order to aggravate detection and reduce size of the file it is packed with a runtime packer.
See a brief description
here
.
Inserted by Thomas Wegele
on 12 Nov 2008 11:46 (GMT +1)
Updated by Thomas Wegele
on 12 Nov 2008 12:10 (GMT +1)
Printer friendly version
Get immediate protection against viruses, worms, trojans and dialers
--------------------------------------------------------------------------------------------------
Download
a fully functional AVIRA free trial.
See more details about
AVIRA Solutions
.
How to buy
AVIRA Products.
Antivirus Download
News
AVIRA receives a new VB 100% for full malware detection
January Virus Top 10
Top Threats: 7 days
Worm/NetSky.P
Worm/Bagle.FI
Worm/Lovgate.W
Worm/Mytob.IN.2
Worm/Netsky.D.Dam
Latest Threats
Worm/Bagle.FR
TR/Dldr.Tiny.BI
Worm/Wootbot.69120
TR/Drop.Bagle.FU.1
TR/Drop.Bagle.FU
Statistics
About Malware
Alerts Panel
Related Links
Copyright © 2009 AVIRA
Feedback
|
Copyright
|
FAQ
|
Privacy
|
Site Map
|
Site Terms