Home Malware Programs Trojans Virus.DOS.Trojan_GameThief

Virus.DOS.Trojan_GameThief

Posted: March 17, 2011

Virus.DOS.Trojan_GameThief as malicious trojan infection searches for *.com and *.exe files on the hard drive and attempts to delete them. The loss of these files may become a brutal strike for the corrupted PC system. Virus.DOS.Trojan_GameThief will download files to the computer without a user's consent, which will lead to security risk. Virus.DOS.Trojan_GameThief can even enable a hacker to get remote access to the affected computer.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %System%\winlogin.dll
    2 %Temp%\104562_ex.tmp

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_6TO4HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_6TO4\0000HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_6TO4\0000\ControlHKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\6to4HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\6to4\EnumHKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\6to4\ParametersHKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\6to4\SecurityHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_6TO4HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_6TO4\0000HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_6TO4\0000\ControlHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\6to4HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\6to4\EnumHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\6to4\ParametersHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\6to4\Security
Loading...