Threat Database Trojans PWS-Banker!gym

PWS-Banker!gym

By JubileeX in Trojans

PWS-Banker!gym can propagate through malicious downloads, email attachments or instant messaging. PWS-Banker!gym is a hazardous Trojan that enters the affected computer system without its victim's consent. Once PWS-Banker!gym infects a compromised PC, it may change your system settings and disable anti-virus software. PWS-Banker!gym tries a number of the most common passwords to get access to your PC's administrator account. PWS-Banker!gym needs to be eliminated immediately after detection.

File System Details

PWS-Banker!gym may create the following file(s):
# File Name Detections
1. %WINDIR%\SYSTEM32\liamtoh.exe
2. %WINDIR%\SYSTEM32\windowflesh.dll

Registry Details

PWS-Banker!gym may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{462D8011-7EEA-46F1-94E7-E81C6A1243A4}\
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{B1D3576A-CA42-4D09-83C1-15D563C19D71}\
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{462D8011-7EEA-46F1-94E7-E81C6A1243A4}\
HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{462D8011-7EEA-46F1-94E7-E81C6A1243A4}\INPROCSERVER32\

Trending

Most Viewed

Loading...