MALWARE: Iranian Expert Reverse Engineer WNvMcTrayin.EXE Trojan

Iranian computer expert Dr.3v1l has made reverse engineer of new malware trojan threat file WNvMcTrayin.EXE.


WNvMcTrayin.EXE Trojan Details

The WNvMcTrayin.EXE malware is discovered in free SOCKS and proxy software Free Proxy v6. Free Proxy v6 is one of most popular free proxy software with 100 downloads a day. When WNvMcTrayin.EXE trojan software installed on personal computer it connects to malicious server allowing malware creator root access to victim computer. Personal information, username and passwords and bank details can be stolen by WNvMcTrayin.EXE malware. WNvMcTrayin.EXE malware server has estimated 20,000 infected zombies.

Infected Files

To find infection check Windows System Startup and processes for program:

C:WINDOWS\system32\uni\WNvMcTrayin.EXE

For full detail of malware files and removal on Iran Security Team forum here: http://forum.irsecteam.org/forum129/thread1428.html

Special thanks to Iran Security Team, #RHH and black_devils b0ys

No comments:

Post a Comment