This attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening.
This signature detects activity of Backdoor.Typideg.
When the Trojan is executed, it may create the following registry entry:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\"conime" = "[THREAT PATH]"
Note: [THREAT PATH] indicates that the path can be anywhere the threat is run from.
The Trojan opens a back door on the compromised computer, and connects to one of the following URLs:
The Trojan may perform the following actions:
Download and execute remote files
Upload files from the compromised computer