Main Menu
Home
Bookmark
Contact Us



 
Win32.Hidra Viruses Information

Name: Win32.Hidra
Category: Viruses
Description: Details
Win32.Hidrag

Hidrag is a non-dangerous memory resident parasitic Win32 virus. The virus infects Win32 PE EXE files. While infecting the virus encrypts a block of victim files.
When the Hidrag virus runs it creates a copy of itself that is about 36K in size and places it in the Windows directory using the name svchost.exe. Next Hidrag registers this file in the system registry auto-run key:
HKLMSoftwareMicrosoftWindowsCurrentVersionRunServices
PowerManager = %WindowsDir%SVCHOST.EXE

Hidrag then stays in Windows memory as an active process, searches for EXE files on all drives - starting with the C: drive - and infects them.
The virus does not manifest itself in any way.
The virus contains the following encrypted text strings:
Hidden Dragon virus. Born in a tropical swamp.
PowerManagerMutant



Top Viruses Visited Pages:
Baboo - 669 visits
Invader. - 532 visits
Firstling.199 - 259 visits
Macro.Excel.Hidemo - 239 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 231 visits
Spartak.110 - 231 visits
Worm.P2P.Harex. - 221 visits
Coito.64 - 220 visits
Small.58. - 210 visits
DDoS.Win32.Kozo - 192 visits

Random Viruses Pages:
Meihua.148
Trojan.Win32.Qhost.b
Estier.212
CmosDeat
Secreta
Grosser.60
Worm.P2P.Surnova.
BAT.Batalia
Szamalk Famil
Markiz_II Famil


 


2006-2008 spyware32.com - Privacy Policy