Proaktiv IT sikkerhed
 Startside  Nyheder  Produkt & tjenester  Virus & sikkerhed  Support  Download  Forhandlere  Køb
Vælg land
Vælg produkt
W32/Sality Destructivity: Medium Spreading: None Overall risk: Low
Detected by virus detection files published: 20 Jan 2005
Virus characteristics first published: 14 Dec. 2006
Virus characteristics latest update: 14 Dec. 2006
Type: Trojan, Virus
Spreading mechanism: File Infection, Network
Overall risk: Low
Payload: Attempts to steal information; download other malware; displays message; terminates security programs
Type Spreading mechanism Destructivity & payload Additional descriptions Detection & removal

This is a family of fileinfecting viruses with backdoor and keylogger capabilities. Some variants install a helper component in the Windows System folder. Names on this component vary by Sality variant:

SYSLIB32.DLL (All early versions)
OLEMDB32.DLL (Sality.M, version 3.03)
WMIMGR32.DLL (Sality.N, version 3.04)
VCMGRD32.DLL (Sality.P/Q, version 3.07)
VCMGCD32.DLL (Sality.R, version 3.09)
WDMFMC32.DLL (Sality.S, version 3.07)
...and others.

This DLL is then injected into running processes.


 

VIRUSADVARSLER
Medium risk
24 Oct 07 Pidief.A
24 Jan 07 Tibs
25 Sep 06 Stration
18 Jan 06 Small.KI
12 Sep 05 Bagle.CS
17 Aug 05 Zotob.B
08 Jun 05 Mytob
17 Feb 05 MyDoom.AQ
26 Jul 04 MyDoom.L
25 Mar 04 Netsky.P
Low risk
05 Mar 07 Viking.GT
27 Jan 06 Feebs
16 Jan 05 MyDoom.AH
22 Apr 04 SDBot
30 Mar 04 Netsky.Q
Frigivelsesdato for seneste definitionsfiler
2008-07-04 (UTC 13:16)

Norman er en af verdens ledende virksomheder indenfor datasikkerhed. Med produkter som antivirus, personlig firewall og antispam, spiller Norman en vigtig rolle i dagens dataindustri.