
INTRENAT.EXE
PROCESS INFORMATION
Process
Name : Intrenat.exe
Process
Path : %System%\intrenat.exe
[ C:\Windows\System32\intrenat.exe ]
Process
type : Internet
Worm
Malware
Name : W32.HLLW.Doomjuice.Worm
Alias : Worm.Win32.Doomjuice,
W32/Doomjuice-A, W32/Doomjuice.Worm.A, WORM_DOOMJUICE.A,
I-Worm/Generic
Threat
level : Low
Process
Details :
Intrenat.exe is the main
component dropped by Doomjuice worm. It spreads
using a backdoor installed by Mydoom Worm. The worm
randomly scans for IP addresses and infects the
vulnerable systems. Doomjuice worm will not
spread by e-mail.
Doomjuice worm copies to
Windows System folder as intrenat.exe and
modifies the registry RUN section to load
automatically. Then it scans other vulnerable
systems and infects them. The registry
modification is given below.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
"Gremlin"= "%STSTEM\intrenat.exe"
Doomjuice worm contains a
payload to perform distributed denial-of-service
attack on microsoft.com server. The worm drops
mydoom worm source code file sync-src-1.00.tbz in
the infected systems.
How can I protect my
system?
Solo has incorporated
intrenat.exe in its signature file to protect
users from this worm attack. Make sure that you
have installed registered version of Solo
Antivirus to protect your system from all virus
threats.
How
to remove this worm?
Solo
antivirus can detect and remove intrenat.exe
safely. Use the following link to Download
30 day trial version of Solo antivirus
to remove viruses from your computer.

Solo anti-virus not only
scans for all viruses, it contains a unique System
Integrity Checker to protect you from
New Internet Worms, Backdoors and
malicious VB, Java Scripts. It also
effectively removes all existing Internet Worms,
File viruses, malicious VB, Java scripts, Trojans,
Backdoors, boot sector, partition table and macro
viruses.
You can
purchase Solo antivirus using the link 

|