Home Malware Programs Dialers Haldex

Haldex

Posted: March 28, 2006

Haldex is a dialer that connects a compromised PC to the Internet by dialing high-cost phone numbers using a modem. It is designed to provide access to pornographic resources. The spyware can get into the computer while visiting many unsafe, mostly adult web sites. Haldex doesn't attempt to hide from the user, as it shows the computer tray icon, creates a desktop shortcut and Start menu group. The threat runs on every Windows startup.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 sws.exe
    2 wininit.ini

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunsws.exeHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstallHaldexLtd-od-stnd245
Loading...