Threat Database Trojans Generic!atr

Generic!atr

By Domesticus in Trojans

Generic!atr is a dangerous trojan infection that may compromise your computer system's security, as it enables a hacker remote connection and identity theft. Generic!atr is very aggressive and can even damage a victim's computer system and steal private details. Generic!atr does not use network resources to propagate, but can propagate via the network by attaching itself to other computer malware. It is strongly recommended to execute system scan with a powerful spyware remover and remove Generic!atr immediately upon detection.

File System Details

Generic!atr may create the following file(s):
# File Name Detections
1. %AppData%\HEX-5823-6893-6818\jusched.exe
2. c:\autorun.inf
3. %System%\winrtsnr.txt
4. c:\qviqhw.pif

Registry Details

Generic!atr may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AMSINT32
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_IPFILTERDRIVER
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_IPFILTERDRIVER
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\amsint32
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_IPFILTERDRIVER\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\amsint32\Security
HKEY_CURRENT_USER\Software\Apcrmkeh\-72398023
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AMSINT32\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AMSINT32\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_IPFILTERDRIVER\0000\Control
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AMSINT32\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\amsint32\Enum
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\amsint32
HKEY_CURRENT_USER\Software\Apcrmkeh
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AMSINT32\0000
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_IPFILTERDRIVER\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_IPFILTERDRIVER\0000
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_AMSINT32
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\amsint32\Security
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\amsint32\Enum

Trending

Most Viewed

Loading...