Worm.Zimuse.Gen

Worm.Zimuse.Gen crack / serial

Worm.Zimuse.Gen is a removal utility that targets the Zimuze malware infection.

The malware comes as an application with a WinZip icon in order to trick the user into running it. To look even more as a a self-extracting archive it displays a dialog box asking for a password in order to successfully unzip the package contents.

Worm.Zimuse.Gen

Download Worm.Zimuse.Gen crack and serial

 

Once executed the application checks the command line parameters and if there is a switch '/Z' then it proceeds to delete all the files , all the registry keys it and all the services it has created during a previous infection.

If no disinfection switch is given then it takes the following actions:

* it checks if it's set to run at startup up, by checking the presence of a key named 'Dump' in HKLMSOFTWAREMicrosoftWindowsCurrentVersionRun.

* if no previous infection is found then it infects the computer.

Infection of the computer consists in:

* dropping the files

- %system32%driversmstart.sys and creates and runs a service named 'mstart' from this file;

- %program-files%Dumpdump.exe"

- %Temp%Dump.ini

- %Temp%Regini.exe

- %system32%driversmstart.sys

- %system32%driversmseu.sys

- %Temp%mseu.ini (used for installation of mseu.sys service)

- %system32%mseus.exe

- %Temp%mseus.ini (used for installation of mseus.exe service)

- %system32% okset.dll

- %system32%ainf.inf

- %Temp%instdrv.exe (which is a clean file used to install services)

- %system_drive%IQTestiqtest.exe (in some versions)

- %system_drive%IQTest eadme.txt (in some versions)

* sets dump.exe file dropped earlier to run at startup (this is the flag of infection)

* deletes the following files (which were used for services instalation)

- %Temp%Regini.exe

- %Temp%Dump.ini

- %Temp%mseu.ini

- %Temp%mseus.ini

- %Temp%instdrv.exe

The malware is inactive for the first 10 days (first variant) and 7 days (second variant). After this period of time, from the moment of infection, it proceeds to infect all usb drives attached to the computer using the classical autorun.inf technique.

After 40 days from the infection (first variant) and 20 days (second variant) the malware goes and overwrites the MBR (master boot record) with garbage rendering the computer un-bootable.

Released: Aug 9th 2010 Rating: 4.3
Size: 201 KB Downloads: 4373
Systems: Win All

User replies

11 October 2018, Gabriella said:

Gracias por Worm.Zimuse.Gen serial

14 September 2018, Gianluca said:

awesome! love it

Leave a reply

Your email will not be published. * Required fields

Website search

Recently updated

Korgo Removal Tool Korgo Removal Tool A handy application that tagrets the Korgo worm
Win32.Worm.Delf.NCZ Removal Tool Win32.Worm.Delf.NCZ Removal Tool A simple utility for cleaning the Delf.NCZ worm from your system
Dabber Removal Tool Dabber Removal Tool This is a simple means of getting rid of the Dabber virus

Software News

Jul 11
Online virtual worlds can help social movements raise awareness and create safe spaces for their members, according to a new study by an academic at the University of East Anglia (UEA).
Jul 8
The core idea of the team headed by Magdeburg project leader, Professor Dr. Mesut Güne is to develop the self-organizing migration of services. This means that the services-such as home automation, data management, and ...
Jun 27
Video game publisher Electronic Arts has tightened some openings cybersleuths found in its Origin online network that could have exposed more than 300 million video game players to identity theft and account losses.
Jun 26
Achieving a good signal-to-background ratio in neutron scattering experiments is a crucial factor in instrument and sample environment design. However, in current Monte Carlo simulation software, not all neutron interactions ...
Jun 25
Apple will unveil new iPhones in September, assuming the company sticks to its usual playbook. The fall timeframe is also when Apple officially releases the latest flavor of iOS, the software that will not only be at the ...
Jun 19
How would you and your neighbours triple the number of households in your street block in order to keep your cherished suburb thriving and do your bit to tackle urban sprawl? You have a number of choices to make. Where do ...
Jun 16
From the Zen capital of LA to the Champs Elysees comes the calming voice of a British Buddhist monk-turned entrepreneur, introducing American-style online mindfulness to the stressed-out French.

About us

Welcome to new crack resource CrackDownloadz.com! Our service can generate cracks, keygens and serials for your software to unlock it. CrackDownloadz provides a lot of popular cracks and keygens. No spyware and adware at all, just download new cracks, keygens and serials. If you have a software that needs a crack feel free to contact us.

Also you may contact us if you have software that needs to be removed from our website.