Troj/Spynov-Gen is a family of Trojans for the Windows platform.
When run, members of Troj/Spynov-Gen will typically copy themselves to the Windows folder as wdfmgr.exe.
Windows\wdfmgr.exe
The Trojans install themselves as a service, setting the following registry entries:
HKLM\SYSTEM\ControlSet001\Services\wdfmgr
DisplayName
WDF Manager
ImagePath
Windows\wdfmgr.exe
More information can be found at this Sophos page.
Loading Comments...