Home Malware Programs Backdoors Glupzy

Glupzy

Posted: January 24, 2011

Glupzy is a Backdoor computer parasite which gives an attacker unauthorized access to the computer system. The hackers behind this cyber attack will gain control of the infected system and start viewing files and documents to steal sensitive information from the computer user. Glupzy secretly makes its way into the system and then installs itself before changing the Administrator's password. Glupzy also modifies the computer settings and disables network shares. It runs on every Windows startup and should be removed immediately using reliable anti-malware software.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 flashy.exe
    2 systemid.pif

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFolderOptions=1HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Start=4HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Flashy Bot

Related Posts

Loading...