Home Malware Programs Worms W32.Madangel

W32.Madangel

Posted: December 8, 2010

W32.Madangel is a network-aware worm that attempts to replicate across existing networks. W32.Madangel makes use of a program that downloads files to the local computer that may represent security risk as it is capable of modifying other files by infecting, prepending, or overwriting them with its own body. Use a reliable malware remover to make sure your PC is free from W32.Madangel.

Aliases

W32/Madangel.a (McAfee)
PE_MADANGEL.A (Trend Micro)
W32/Madang-A (Sophos)
Virus:Win32/Madang.A (Microsoft)
Virus.Win32.Small (Ikarus)
Win32/MaDang (AhnLab)

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %System%\Serverx.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
Loading...