SysSafe
SysSafe Description
SysSafe is a computer malware infection. SysSafe, once installed and activated, is able to compromise a system through recording or logging keystrokes or online activity. A remote attacker could use SysSafe to obtain personal information or banking account data from a computer user. SysSafe can be very difficult to manually remove due to its ability to load into memory at startup of Windows.
Type: Malware
How Can You Detect SysSafe?
SysSafe Technical Report
As new SysSafe details are reported by our customers and findings from our Threat Research Center, we will update this section.
The following SysSafe files with its MD5s were created in the system:
| File Name | File Size | MD5 |
|---|
| USBScan.exe | 1261056 | f3310aac1e74dfac240548709f87b60a |
SysSafe has typically the following processes in memory:
- USBScan.exe
SysSafe creates the following registry entries:
- HKEY_LOCAL_MACHINESOFTWAREMICROSOFTWINDOWSCURRENTVERSIONRUN USBScan.exe
Important Article Disclaimer
This entry was posted on 10/5/09 and is filed under Malware.
You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

SysSafe 










