Troj/Mdrop-CWQ exhibits the following characteristics:
Other vendor detection
- Avira
- TR/Ag.aqez.15360
- Kaspersky
- Trojan-Dropper.Win32.Microjoin.jpg
- Trend
- PAK_Generic.001
Runtime Analysis
Copies Itself To
- C:\Documents and Settings\All Users\Application Data\wmimgmt.exe
Registry Keys Modified
- HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced
- ShowSuperHidden
- 0x00000000
- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden
- UncheckedValue
- 0x00000000