Edge Rewrite
// HTMLRewriter · presentation

This page was redesigned at the edge.

Cloudflare fetched the original article and streamed it through HTMLRewriter to apply an entirely new visual system without rebuilding the source page.

// request.cf · coarse context

A page that knows where it met you.

Only coarse request metadata is shown. This demo does not display or persist visitor IP addresses.

Country
US
Cloudflare location
CMH
Connection
HTTP/2
Language
Not provided

Ray ID: a21ac805db415e44

Jump to content

Agent.AWF

From Wikipedia, the free encyclopedia

AWF (or Agent.AWF) is a malicious Trojan downloader affecting the Microsoft Windows operating system.[citation needed]

Methods of infection

[edit]

This Trojan is considered obsolete, and there are no known variants in the wild.[citation needed]

Affected operating systems

[edit]

The following operating systems are known to be affected.[1]

Operation

[edit]

Agent.AWF displays virus activity in that it replaces files on a user's computer with a copy of itself, and moves the original, legitimate file to a back sub-folder. It is known to attempt to terminate security software, and the Trojan downloads a backdoor onto the computer, allowing the attacker to further compromise the computer. It is also known to modify the Windows registry.[citation needed] Agent.AWF does not spread automatically: it needs an attacking user's intervention in order to reach the affected computer. The means of transmission used include, among others, floppy disks, CD-ROMs, emails with attached files, Internet downloads, FTP, IRC channels, peer-to-peer (P2P) file sharing networks, etc.[1]

Identification

[edit]

During installation, the following files are created, and may be present on a compromised system.[citation needed]

  • abc123.pid
  • svcipa.exe
  • nod32kui.exe

References

[edit]
  1. 1 2 "Agent.AWF - at a glance". pandasecurity.com. Retrieved 8 January 2017.