Watchdll.dll

siehe:
http://www.sophos.com/virusinfo/analyses/trojfreddy2001.html

Troj/Freddy2001 is a backdoor Trojan that allows others remote access to your computer over a network.

It copies itself to C:\Windows\wintool.exe and adds the registry key

HKLM\Software\Microsoft\Windows\CurrentVersion
\Run\wintool.exe

which points at this location. It will also drop the file C:\windows\watchdll.dll
which is used to provide the Trojan with keylogging capabilities.

Höchste Gefahr: die dll fängt die Tastatureingabe ab!
 
Zurück
Oben