Home » Trojan » Trojan Horse SHeur.CODS

Trojan Horse SHeur.CODS

20 October 2008

Trojan Horse SHeur.CODS is a trojan that can spread on removable USB drives. Trojan Horse SHeur.CODS start itself by creating an autorun file that runs each the the volume is mounted.

Aliases:
-

Risk Level: Low

File Size: Varies

Affected System: Windows

Common Symptoms:
1. Presence of file resycled\boot.com and resycled\autorun.inf

Related posts:

  1. resycled/boot.com

    resycled/boot.com is a worm that propagates on local fixed and removable USB drives. resycled/boot.com may infect drives via autorun.inf file it...

  2. Trojan Horse Dropper.Agent.tid

    Trojan Horse Dropper.Agent.tid is a trojan that can download and execute additional malware on to the already compromised computer. Aliases: -...

  3. Trojan.Horse.Generic.11

    Trojan.Horse.Generic.11 is a heuristic detection for trojan that can download and install a rogue security applications on computer. This program may...

9 Comments »

  • 1 }
    webmaster (author) said:

    Please see removal discussion on resycled/boot.com

  • 2 }
    revanthstar said:

    achc

  • 3 }
    Rajhlinux said:

    OMG THANK YOU !!!!!!!!!!!!! SO MUCH !!!! FLASH DISINFECTOR WORKED FOR ME !!!!!!!!! I HAVE 5 Drives !!! and, all the time when I would open one of them, something popped out tat would say “resycled/boot.com is not a valid Win32 application” I did so much research and googling not thing would work good and last stop I had hope with FLASH DISINFECTOR which actually worked ! go to this web site: “http://www.techsupportforum.com/sectools/sUBs/Flash_Disinfector.exe” and download this !!! Run it !! and everything would be perfect…This program might make your background icons disappeared, but don’t worry after few seconds everything will come back and all ur drives world be fixed!!! THANK YOU FLASH DISINFECTOR !!! :) :) :) :)

  • 4 }
    Rene said:

    Thank God 4 Desinfector…
    100% works in a few seconds :-)
    Thanx

  • 5 }
    can said:

    thank you….

  • 6 }
    Anonymous said:

    Desinfector didn’t work for me…

  • 7 }
    Radek said:

    Desinfector works perfect!!!

  • 8 }
    ajay raina said:

    can you give me proper guide in virus removing in regestries

  • 9 }
    ggia said:

    AdAware (Lavasoft) and AVIRA did not detect “resycled/boot.com is not a valid Win32″, but Malwarebytes’ Anti-Malware did. MA-M is a small, fast, freeware program.

Leave your response!

Add your comment below or subscribe to these comments via RSS.
Be nice. Keep it clean. Stay on topic. No spam.