Home Malware Programs Trojans Backdoor.Win32.Clampi.a

Backdoor.Win32.Clampi.a

Posted: October 29, 2009

Backdoor.Win32.Clampi.a is a Trojan program created to steal confidential user data and distantly manage the victim's computer. Backdoor.Win32.Clampi.a is a Windows PE EXE file. The size of Backdoor.Win32.Clampi.a is 470 bytes. Backdoor.Win32.Clampi.a downloads various codes from servers. These codes can be changed or replaced with other malicious codes.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %AppData%\.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\"GID"HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\"KeyE"HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\"KeyM"HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Settings\"PIDHKLM\Software\Microsoft\Windows\CurrentVersion\Run]HKEY..\..\..\..{RegistryKeys}"" = %AppData%\.exe
Loading...