First4DRM

Por GoldSparrow em Malware

First4DRM is a rootkit that conceals any running processes, files, folders, and registry subkeys that begin with the $sys$ string. First4DRM has the ability to prevent installed applications and computer tools from entering hidden objects to only allow specific processes that begin with the same $sys$ string to access them. The First4DRM rootkit is a component of XCP Content Manager (which is genuine software that is used for the protection of digital media from unauthorized reproduction, publishing… First4DRM operates as spyware and automatically runs on every Windows startup.

Detalhes Sobre os Arquivos do Sistema

First4DRM pode criar o(s) seguinte(s) arquivo(s):
# Nome do arquivo Detecções
1. aries.sys

Detalhes sobre o Registro

First4DRM pode criar a seguinte entrada de registro ou entradas de registro:
HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServices$sys$aries

Tendendo

Mais visto

Carregando...