Class | Trojan |
Platform | Win32 |
Description |
Technical DetailsThis Trojan is a Windows PE EXE file. The file is 12 288 bytes in size. InstallationWhen launched, the Trojan copies its executable file to the Windows root directory: %WinDir%??????.exe In order to ensure that the Trojan is launched automatically when the system is rebooted, the Trojan adds a link to its executable file in the system registry: [HKLMSoftwareMicrosoftWindowsCurrentVersionRun] "??????" = "%WinDir%??????.exe" PayloadThe Trojan extracts a video clip from its body and will display it on the victim machine. Removal instructionsIf your computer does not have an up-to-date antivirus, or does not have an antivirus solution at all, follow the instructions below to delete the malicious program:
|
Find out the statistics of the threats spreading in your region |