Aliases
  • Virus.Win32.Sality.q
  • W32/Sality.x
  • Win32/Sality.NAJ
  • W32.Sality.U
  • PE_SALITY.AS
W32/Sality-AA is a virus that also acts as a keylogger.

W32/Sality-AA infects files of ".exe" and ".scr" on all drives excluding those under .

W32/Sality-AA creates the files

\vcmgcd32.dll
\vcmgcd32.dll_

These files are also detected as W32/Sality-AA.

The virus logs keystrokes to certain windows, as well as information about the infected computer. This logged data is periodically submitted to a remote website.

W32/Sality-AA deletes all files found on the system with extension ".vdb" and ".avc" and files that start "drw" and end ".key".

W32/Sality-AA modifies the file \system.ini by adding the following:
[MCIDRV_VER]
DEVICE=

W32/Sality-AA has been seen spreading itself via email by piggy-backing on W32/Netsky-T.


Sality Killer sality is a renewal of a proven off to clean the infected files ... Sality virus.
Virus was Sality that always makes for geregetan not often know the name Virus infektor this sophisticated ...

> Please download here <

Please download the files on double click and wait until the end, to ensure really clean, please repeat the run again .. Files that you may have and have been infected with this virus will recover soon

No Response to " "

Post a Comment