Trojan.Wom
* registry path
HKEY_CURRENT_USER\Software\WinRAR SFX
* files path
C\Program Files\Wom\WomWipe.exe
C\Program Files\Wom\WomUpdate.exe
C\Program Files\Wom\WomP2P.dll
C\Program Files\Wom\WomOpenGLTest.ASC
C\Program Files\Wom\WomEncrypt.exe
C\Program Files\Wom\WomDecryption.exe
C\Program Files\Wom\Womcc.exe
C\Program Files\Wom\Womcc.chm
C\Program Files\Wom\WinProcess.exe
C\Program Files\Wom\WinMem.exe
C\Program Files\Wom\UpdateServer.ini
C\Program Files\Wom\Smartvsd.vxd
C\Program Files\Wom\SelfRegChg.ini
C\Program Files\Wom\PortsList.inf
C\Program Files\Wom\OptiServices.ini
C\Program Files\Wom\GWIOPM.SYS
C\Program Files\Wom\Devs.Dat
C\Program Files\Wom\Big5.dat
C\Program Files\Wom\ActiveXImmunity.ini
dir_C\Program Files\wom
|
|