Home Malware Programs Worms Malware.Imaut.C!rem

Malware.Imaut.C!rem

Posted: April 20, 2011

Malware.Imaut.C!rem is a malicious network-aware worm that can quickly copy itself across the existing network. Malware.Imaut.C!rem can also overwrite or change various files, so it doesn't need some special abilities, in order to make your computer be infiltrated with a big number of malware infections and system errors. Malware.Imaut.C!rem includes characteristics of a rogue anti-spyware program that uses aggressive and tricky advertising and falsified reports of exaggerated system security threats to convince users to download and purchase their software product. Remove Malware.Imaut.C!rem before it propagates to other network computers.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %System%\autorun.ini
    2 %System%\setting.ini
    3 %System%\winfiles.exe
    4 %System%\winnt.exe
    5 %Windir%\Tasks\At1.job
    6 %Windir%\winfiles.exe
    7 %Windir%\winnt.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\SystemHKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NTHKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore
Loading...