Worm.Win32.Protoride.g, W32/Protoride.worm, W32.Protoride.Worm
W32/Protoride-G is a Windows worm that spreads via network shares. The worm also has a backdoor component that allows unauthorised remote access to the computer via IRC channels.
W32/Protoride-G attempts to copy itself to the Windows system folder with the filename rdpty.exe and then set the following registry entry so as to run itself before all EXE files:
W32/Protoride-G attempts to copy itself to msupdate.exe in the startup folder of shared network computers.
W32/Protoride-G may also set the following registry entry:
W32/Protoride-G remains resident, running in the background as a service process and listening for commands from remote users via IRC channels.
Pint-size luxury and funky style
Shopping for a new car this weekend? See how the BMW X2 stacks up against the Volvo XC40 in our side-by-side comparison.