Home Malware Programs Backdoors Backdoor.Graybird.GEN

Backdoor.Graybird.GEN

Posted: October 28, 2010

Threat Metric

Threat Level: 6/10
Infected PCs: 42
First Seen: February 21, 2011
OS(es) Affected: Windows

Backdoor.Graybird.GEN is a malicious backdoor Trojan that runs in the background and allows remote access to a compromised computer. Backdoor.Graybird.GEN contains a hacktool for attackers to gain remote control of the targeted PC. Backdoor.Graybird.GEN can change Windows Explorer settings to download other malicious files from external servers. Backdoor.Graybird.GEN monitors user activities to obtain valuable personal information. Backdoor.Graybird.GEN poses a dangerous threat to any computer or system and should be terminated immediately.

Aliases

Trj/CI.A [Panda]Generic10.QLS [AVG]W32/Slefdel.GK!tr [Fortinet]Packed.Win32.Klone [Ikarus]Packer.NSAnti.Gen (v) [Sunbelt]Win-Trojan/Slefdel.299867 [AhnLab-V3]Packed.Win32.Klone!IK [a-squared]Backdoor/Win32.Hupigon.gen [Antiy-AVL]Mal/Packer [Sophos]Heuristic.BehavesLike.Win32.Backdoor.C [McAfee-GW-Edition]BackDoor.Pigeon.569 [DrWeb]TrojWare.Win32.Trojan.Agent.Gen [Comodo]Backdoor.Hupigon.HJV [BitDefender]PUA.Packed.NPack-3 [ClamAV]Win32.BDSBackdoor [eSafe]
More aliases (56)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%COMMONPROGRAMFILES%\Microsoft Shared\MSINFO\smax.exe File name: smax.exe
Size: 608.76 KB (608768 bytes)
MD5: eda6ed6430809f0aabd8a6410b0050c2
Detection count: 76
File type: Executable File
Mime Type: unknown/exe
Path: %COMMONPROGRAMFILES%\Microsoft Shared\MSINFO
Group: Malware file
Last Updated: February 21, 2011
Loading...