Threat Database Backdoors Trojan-Spy.Goldun.btz

Trojan-Spy.Goldun.btz

By ZulaZuza in Backdoors

Trojan Spy.Win32.Goldun.btz is a terrible backdoor trojan that runs in the background and enables remote access to the corrupted computer system. Trojan-Spy.Goldun.btz can be installed under misleading falsehoods, invading the victim's PC without their consent or knowledge. Trojan-Spy.Goldun.btz makes effort to be a security tool, which goal is to obtain as much information as it can. Trojan Spy.Win32.Goldun.btz can change Windows Explorer settings to download other infected files from external servers. Trojan Spy.Win32.Goldun.btz is designed by hackers to gain an authorized access to your computer to monitor the PC without the victim's knowledge. Remove Trojan-Spy.Goldun.btz immediately once it is identified on your PC to keep your computer safe.

File System Details

Trojan-Spy.Goldun.btz may create the following file(s):
# File Name Detections
1. gbiehcef.dll
2. SISWin32[1].dll
3. Wapp.exe
4. gplan.exe
5. csrcs.exe
6. unchsy.exe
7. tjnw.exe
8. smastsj.exe
9. wmiprevse.exe
10. win.exe
11. msn.exe
12. services.exe
13. gmillogof.exe
14. watchdll.dll
15. zyndld32080926jt.dll
16. userinit.exe
17. liel.exe
18. Windows32.exe
19. astrix.dll
20. winlogon.exe
21. regsvc32.exe
22. temp01.exe
23. winpflbp.exe
24. system.exe
25. ree2.exe
26. crdisk.exe
27. crtdl.dll
28. installer.exe
29. winhlpf.exe
30. jdt7643.exe
31. defrsmgr.dll
32. msiead32.dll
33. msnscps.dll
34. swapdm.dll
35. fuwarxyus.dll
36. Keysaver.dll
37. gbiehbsb.dll
38. System32.exeeeekp.dll
39. Explorer.exe
40. imglog.exe
41. winupsbdk.exe
42. RunDLL31.exe
43. protectgb.exe
44. svhost.exe
45. smss.exe
46. 40518.exe
47. audiohq.exe
48. memaker2.EXE
49. winagent.exe
50. csrss.exe
51. svrsrn.exe
52. explora.exe
53. winnt2.exe
54. StormSet.exe
55. STRWIN32.EXE
56. svteppsk.exe
57. mdccasys32_080512.dll
58. winnt4.exe
59. winglogon.exe
60. f4.dll
61. winlbom.exe
62. winixplore.exe
63. certcl.dll
64. hook.dll
65. helper.dll
66. Oldwin2.exe
67. lsass.exe
68. msn64.exe
69. ipv6mons.dll
70. wscrntfy.exe
71. lanmanwrk.exe
72. SCVHOST.EXE
73. CcEvtSvc.exe
74. krn4.exe
75. iexplore.exe
76. ModBrd1.exe
77. ieexplorer.exe
78. manleuk.exe
79. orkutkut.exe
80. winhelp32.exe
81. ree1.exe
82. winnet.dll
83. netfx20.exe
84. svchost.exe
85. hook.exe
86. update01.exe
87. od3mdi.dll
88. systeminit.exe
89. qwesddddd.dll
90. fun.exe
91. wsupd1.exe
92. gbiehdst.dll
93. msn_livers.exe
94. KernelDrv.exe
95. winntR2.exe
96. taskenv.exe
97. imola.exe
98. server.exe
99. OKIX.exe
100. dinputb.dll
101. ipv6monl.dll
102. winhlpj.exe
103. drwaec32.dll
104. msnmsgr.exe
105. caclsn32.dll
106. sysecurex.exe
107. Dll.dll
108. termsrv.dll
109. 58.tmp
110. WindowsUpdate.scr

Registry Details

Trojan-Spy.Goldun.btz may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERS
RUNNING PROGRAM\Explorer.exe
NT\CURRENTVERSION\WINLOGON\NOTIFY\ GbiehCef
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ GlobalFlagimglog
MICROSOFT\WINDOWS
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Explorer
NT\CURRENTVERSION\WINLOGON\NOTIFY\eeekpNT\CURRENTVERSION\WINLOGON\NOTIFY\ GbiehBsb
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ System32
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ ModBrd1
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWSNT\CURRENTVERSION\WINLOGON\NOTIFY\SOFTWARE\MICROSOFT\WINDOWS
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\CcEvtSvc
RUNNING PROGRAM\WindowsUpdate.scr
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ krn
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN\ Wapp

Trending

Most Viewed

Loading...