Home Malware Programs Dialers WildJP

WildJP

Posted: March 28, 2006

WildJP is a dialer that connects a compromised PC to the Internet by dialing a premium rate phone number using a modem. WildJP can get into the computer while visiting some insecure web sites.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 wild4_jp-uninstall.exe
    2 wild4_jp.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_CLASSES_ROOTjpndFileshellopencommandDefault=C:ProgramFilesComsoftDialersWild4_JPwild4_jp.exe%1HKEY_CURRENT_USERSoftwareComsoftDialersWild4_jpHKEY_CURRENT_USERSoftwareNetscapeNetscapeNavigatorUserTrustedExternalApplicationsC:ProgramFilesComsoftDialersWild4_JPwild4_jp.exeHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunWild4_jpHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstallWild4_jpHKEY_LOCAL_MACHINESoftwareCLASSESjpndFileshellopencommandDefault=C:ProgramFilesComsoftDialersWild4_JPwild4_jp.exe%1HKEY_USERS.DEFAULTSoftwareComsoftDialersWild4_jpHKEY_USERS.DEFAULTSoftwareNetscapeNetscapeNavigatorUserTrustedExternalApplicationsC:ProgramFilesComsoftDialersWild4_JPwild4_jp.exe
Loading...