Generic Dropper.ru

Generic Dropper.ru Description

Generic Dropper.ru is a malicious Trojan that alters the system registry to run everytime the system starts-up. Generic Dropper.ru attempts to connect to a remote server to download malware on the compromised system. Remove Generic Dropper.ru before it causes chaos on your PC.

Technical Information

File System Details

Generic Dropper.ru creates the following file(s):
# File Name Detection Count
1 %WINDIR%\system32\sdra64.exe N/A
2 %WINDIR%\system32\lowsec\user.ds N/A
3 %WINDIR%\system32\lowsec\local.ds N/A

Registry Details

Generic Dropper.ru creates the following registry entry or registry entries:
Registry key
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Shared Access\Parameters\FirewallPolicy\StandardProfile\]
EnableFirewall="0×00000000"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Shared Access\Parameters\FirewallPolicy\StandardProfile\]