wucmdex.exe - Dangerous
wucmdex.exe
Jeff's Story:
My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.
I sought a solution on the Internet and discovered your product and tried out the trial.
You quickly found the rootkit and SAVED my PC!
I haven't had any problems since, and I'm extremely grateful.
Manual removal instructions:
Aliases: Backdoor.Rbot.gen, BackDoor-CGS trojan
It is a worm which attempts to spread to remote network shares.
It also contains backdoor Trojan functionality.
Spreads to network shares with weak passwords as a result of the backdoor Trojan element receiving the appropriate command from a remote user.
Moves itself to the Windows system folder as WUCMDEX.EXE
and creates entries in the registry at the following locations to run on system startup:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\[x]
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\[x]
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\[x]
Automatical remove:
Use RegRun Startup Optimizer.