File name: realplayers.exe
Program name: this change me
Description: W32/Tilebot-HF worm and IRC backdoor. This infection utilizes the rdriv.sys rootkit to hide itself.W32/Tilebot-HF spreads to other network computers by exploiting common buffer overflow vulnerabilities, including: SRVSVC (MS06-040), LSASS (MS04-011), RPC-DCOM (MS04-012), WKS (MS03-049) (CAN-2003-0812), PNP (MS05-039) and ASN.1 (MS04-007). The worm may also spread via network shares and MSSQL servers protected by weak passwords.
Information added by: Reset at 30 January 2009
Hint: If realplayers.exe file is a virus or trojan, we recommend to use a antivirus software or registry cleaner.
Read more about realplayers.exe
|