AIMVision


Name: AIMVision
Aliases: Backdoor.Aim.b, Trojan.Spy.AimVision,
Ports:
Files:
Created: Mar 2002
Requires: Richtx32.ocx and VBRun60sp5.exe - are required to run the trojan.
Actions: Remote Access / Steals passwords / AIM trojan
Registers: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
HKEY_CLASSES_ROOT\WindowsRuntimeHelp4.881.1208\shell\open\command
HKEY_CURRENT_USER\Software\VB and VBAProgramSettings\Microsoft Visual Basic AddIns\VBDataViewWindow
HKEY_CLASSES_ROOT\
Notes: Works on Windows, together with AOL´s Instant Messenger AIM.
Country:
Program:

© Copyright von Braun Consultants. This information may include technical inaccuracies or typographical errors. If you have any questions or further information about the actual trojan above, please contact Joakim von Braun at <joakim.von.braun@risab.se>