Threat Database Worms IM-Worm.Win32.Sohanad.qr

IM-Worm.Win32.Sohanad.qr

By ESGI Advisor in Worms

IM-Worm.Win32.Sohanad.qr is a malicious network-aware worm that makes effort to replicate itself across the existing network. IM-Worm.Win32.Sohanad.qr may modify some system settings that may have negative effect on overall system security condition. IM Worm.Win32.Sohanad.qr will download files to the computer without user's authorization which will result in security risk. IM-Worm.Win32.Sohanad.qr is a serious threat to your PC system and should be eliminated immediately.

File System Details

IM-Worm.Win32.Sohanad.qr may create the following file(s):
# File Name Detections
1. %Windir%\regsvr.exe
2. C:\Documents and Settings\\Start Menu\IM-Worm.Win32.Sohanad.qr\
3. %System%\setup.ini
4. C:\Documents and Settings\\IM-Worm.Win32.Sohanad.qr\
5. %System%\ssdata\lgstat.ini
6. %PROGRAM_FILES%\IM-Worm.Win32.Sohanad.qr.
7. %Windir%\Tasks\At1.job

Registry Details

IM-Worm.Win32.Sohanad.qr may create the following registry entry or registry entries:
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
HKEY_LOCAL_MACHINE\Software\IM-Worm.Win32.Sohanad.qr
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System

Trending

Most Viewed

Loading...