Nahata


Name: Nahata
Aliases: W32.Nahata, Info, Vbs.Info, I-Worm.Nahata,
Ports:
Files: 100_4x~1.scr - Info.vbs - - 28,160 bytes (compressed) - 81,920 bytes (uncompressed)
Created:
Requires:
Actions: Worm / IRC trojan / Destructive trojan
Registers: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Runonce\
HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Runonce\
HKEY_CURRENT_USER\Software\info\
Notes: Works on Windows, together with Mirc32 and Prich.
Country:
Program: Written in Visual Basic Script (VBS).

© Copyright von Braun Consultants. This information may include technical inaccuracies or typographical errors. If you have any questions or further information about the actual trojan above, please contact Joakim von Braun at <joakim.von.braun@risab.se>