| Name: | Petik |
| Aliases: | W32/Petik-K, Troj/Petik-K, Loft Story, PetTick, Mineup, WinMine, I-worm.WinMine, Rush, W32.Pet_Tick.G, Troj_Rush.A, I-worm.Petik, Worm_Pettick.A, W95.Pet_Tick.gen, Anthrax, I-Worm.Anthrax, W32.Mineup, |
| Ports: | |
| Files: | Loft_story.exe - Mail32.exe - Scanvir_25.exe - Anthrax_info.exe - Antrax.jpg.vbs - Mssys32.exe - Winmine.exe - Loft.htm - Activex.vbs - Rushhour.vbs - Envoie_vbs.vbs - 554 bytes - 5,180 bytes - 5,632 bytes - 6,144 bytes (UPX compressed) - 6,656 bytes - 8,192 bytes (uncompressed) - 12,288 bytes |
| Created: | |
| Requires: | |
| Actions: | Worm / Mail trojan / IRC trojan / Destructive trojan |
| Registers: | HKEY_CURRENT_USER\Software\Microsoft |
| HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\ActiveX 1.0 | |
| HKEY_CURRENT_USER\\Software\Microsoft\InternetExplorer\Download Directory | |
| HKEY_LOCAL_MACHINE\\Software\Microsoft\Windows\CurrentVersion\RegisteredOwner | |
| HKEY_LOCAL_MACHINE\\Software\Microsoft\Windows\CurrentVersion\RegisteredOrganization | |
| HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page | |
| Notes: | Works on Windows, together with MS Internet Explorer, MS Outlook and an IRC software. |
| Country: | |
| Program: |