NumLock


Name: NumLock
Aliases: Win32.HLLW.Nulock,
Ports:
Files:
Created:
Requires:
Actions: Worm / Destructive trojan
It spreads through floppies inserted in A:\. On Tuesdays the wormdeletes User.dat, System.dat, User.da0 and System.da0.
Versions:
Registers: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\HKEY_CLASSES_ROOT\dllfile\shell\open\command
Notes: Works on Windows.
Country:
Program: Written in Delphi.

© Copyright von Braun Consultants. This information may include technical inaccuracies or typographical errors. If you have any questions or further information about the actual trojan above, please contact Joakim von Braun at <joakim.von.braun@risab.se>