Search:       

Saturday, 17 May 2008       

Win32.Tinit. Spyware/Adware Definition


Name: Win32.Tinit.
Category: Viruses
Description: Details
Win32.Tinit.a

It is not a dangerous per-process memory resident parasitic Win32 virus. It runs as a background process of infected application, scans local and network drives, looks for Win32 executable files (PE EXE files) with .EXE and .SCR extensions and infects them.
The virus contains two components: about 1Kb "loader" written in assembler and "main" program written in Delphi. The "main" component is compressed by UPX PE EXE files compressing utility and has the size about 170K. Being decompressed the virus code has about 400K of size.
While infecting a file the virus writes to the end of file its "loader" and modifies file header so that loader gets control when infected file is run (as usual Win32 viruses do). The virus then appends to the file its "main" component (as overlay data).
When infected file is run the virus loader gets access to system functions (Windows API), reads its main component, writes it to Windows temp directory with random name and .TMP extension, and activates it. So the main virus code gets control.
The virus also has "backdoor" ability. It connects to Internet, waits for "host" commands and performs two actions: reports computer information to "host", and executes a file requested by "host".


Top Viruses Visited Pages:
ECW.57
Gorgan.271
Gorill
Guerilla.199
HLLP.Nover.771
Holiday Famil
HS.90
Hydra_II Famil
I-Worm.Mimail.
I-Worm.MyLife.
I-Worm.MyLife.
I-Worm.Sobig.
Ice Famil
IDEA.612
Imi.1536.

 


Main Menu
Home
Top Downloads
New Programs
Awards
Submit
Link to us
Spyware Definitions
Viruses Info
Recipes
Jokes
Contact us



Partners
Softs Land
Hotel Reservations
Computer Articles
Viruses Info
Free Downloads
Data Recovery Shareware Downloads Free Articles
Cooks Recipes
Download Programs
Windows Drivers
MySpace Generators

Check PageRank

 

 

- Privacy Policy -