Once launched, the Trojan creates the following entry to the system registry:
[HKLM\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\"
If your computer does not have an up-to-date antivirus, or does not have an antivirus solution at all, follow the instructions below to delete the malicious program:
- Delete the Trojan process.
- Delete the original Trojan file (the location will depend on how the program originally penetrated the victim machine).
- Update your antivirus databases and perform a full scan of the computer (download a trial version of Kaspersky Anti-Virus).
This Trojan is designed to steal confidential information (user passwords). It is designed to steal a range of confidential information. It is a Windows PE EXE file. It is 54,784 bytes in size. It is written in Assembler. Payload

Subscribe
Hot Articles