pe_conut.a .NET arc. virus
from Trend Micro
Quote:
QUICK LINKS Solution
--------------------------------------------------------------------------------
Virus type: File Infector
Destructive: No
Aliases: W32.HLLP.Conut@mm, Win32/Cotan.A@mm, I-Worm.Conut, Win32.NET.Coconut, W32/Coconut, Win32:Kokon [Wrm], W32/Coconuts
Overall risk rating: Low
Reported infections: Low
Damage Potential: High
Distribution Potential: High
Source here http://c.moreover.com/click/here.pl?r80443118
Re: pe_conut.a .NET arc. virus
The win32.net.coconut virus that null mentioned is a file infector that runs on the Microsoft.NET framework. It randomly infects EXE files found in the Windows directory based on a random number generated through the following dialog:
(view attachment)
This virus drops a VBScript component that sends it out via email using Microsoft Outlook to a maximum of 3,000 recipients found in the Outlook address book. The mass-mailing component sends out the following email:
Subject: The Coconut Game
Message body: This game made me feel like I was on a vacation :)
Attachment: coconut.exe
Watch out for it.
BD]Hobbit