Sends out requests to malicious sites and recieves a list of sites where it will download more files to the infected system.
Loads itself into the Winlogon Userinit key to ensure that the infection is launched on startup of the infected system.
How It Infects: Trojan-Downloader.Win32.Agent.bmwp has no specific means of infection.
How To Avoid Infection: Do not click any unexpected links in instant messages. Do not download email attachments from unexpected sources. Do not download unknown files or files from unknown sources. If using StopSign, be sure that the On-Access Scan is installed and enabled to help scan files as they are accessed. Scan all files with the StopSign Threat Scanner before executing them. Ensure that all updates are installed from Microsoft's Windows Update to help protect against vulnerabilities in the operating system.
Vulnerable Operating Systems: Windows 95/98/Me/NT/2000/XP