Threat Database Worms Malware.Gammima

Malware.Gammima

Malware.Gammima is a worm that distributes itself by replicating across removable media. Malware.Gammima is installed and executed the moment an unsuspecting user opens an infected storage device. Malware.Gammima provides unauthorized users with access and control over an infected PC. Malware.Gammima gives attackers the ability to steal a victim's confidential information and use it for malicious activities. Malware.Gammima should be removed before it causes serious damage to both the victim's computer and identity.

File System Details

Malware.Gammima may create the following file(s):
# File Name Detections
1. %Temp%\uret463.exe
2. %Temp%\lhgjyit0.dll
3. %Temp%\lhgjyit1.dll
4. c:\ig.bat
5. c:\autorun.inf

Registry Details

Malware.Gammima may create the following registry entry or registry entries:
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\MADOWN]
dorfgwe = "%Temp%\uret463.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
urlinfo = "awsuym.j"

Related Posts

Trending

Most Viewed

Loading...