Clampi

Clampi is a dangerous Trojan that dropped several malicious executables onto the infected system. When executed, the infected system can become compromised and used to perform malicious actions. Clampi can connect to several different remote servers for the purpose of downloading updates or receive new instructions for the compromised system to perform. Manual detection and remove of Clampi is difficult as it uses advanced methods to remain undetected.

Registry Details

Clampi may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\"PID"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\"GatesList"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\"KeyE"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\"GID"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\"KeyM"

Related Posts

Trending

Most Viewed

Loading...