Daily virus report (Aug 21, 2007)
Aug 21, 2007 - RISING
Aug 21, 2007 one virus needs your attention. It is Trojan.DL.Win32.Agent.xtk. Trojan.DL.Win32.Agent.xtk modifies the web pages and injects the virus code at the infected computer. If these web pages are uploaded to a website and visitors access this website, their computers will get infected.
The virus of today:
Name: Trojan.DL.Win32.Agent.xtk
Warning level: Dangerous
Category: Trojan
Affected System: WIN 9X/NT/2000/XP
The virus drops itself at Windows system directory (by default C:\Windows\System32) and the filename is win32.exe. It also adds an 'qq' item to the startup items in the Windows Registry to achieve automatic running with Windows startup. The virus automatically searches htm, asp, php web page files from local host and insert virus code in these files. If these web page files are uploaded to a website and visitors access this website, their computers will get infected.
Anti-virus experts suggest that computer users take the following measures to protect against this virus:
Do not open suspicious mail and suspicious websites; turn off or delete unnecessary system services; patch the system in a timely manner as many viruses spread by taking advantage of the system exploits or vulnerabilities; install anti-virus software for real-time monitoring and protection; Open auto-protect function when accessing to the internet; Install personal firewall to prevent the loss of password; Set up a complicated password for the administrators account.