Threat Database Trojans Trojan:Win32/SysInvade!gmb

Trojan:Win32/SysInvade!gmb

By GoldSparrow in Trojans

Trojan:Win32/SysInvade!gmb is a computer Trojan horse that may allow remote attackers to infiltrate a vulnerable system. Through use of Trojan:Win32/SysInvade!gmb a remote hacker may gain access to steal personal information or other data stored on the system’s hard drive. Additionally, Trojan:Win32/SysInvade!gmb may allow the master boot record to be manipulated allowing Trojan:Win32/SysInvade!gmb to load at startup of your system and Windows. It is essential that the Trojan:Win32/SysInvade!gmb threat be detected and removed with an antimalware program before the infected system is infiltrated by an unknown attacker.

File System Details

Trojan:Win32/SysInvade!gmb may create the following file(s):
# File Name Detections
1. %AppData%\p1.exe
2. %CommonAppData%\.
3. %LocalAppData%\KB8456137\KB8456137.exe
4. %UserProfile%\Application Data\[random digits]\[random digits].cfg

Registry Details

Trojan:Win32/SysInvade!gmb may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Classes\\DefaultIcon "(Default)" = '%1'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "SD2014" = "%AppData%\\.exe"
HKEY_CLASSES_ROOT\CLSID\{750fdf0e-2a26-11d1-a3ea-080036587f03}\InProcServer32 "(Default)" = "\.dll"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\KB8456137 = "%LocalAppData%\KB8456137\KB8456137.exe"

Trending

Most Viewed

Loading...