Home Malware Programs Trojans TrojanSpy:Win32/Gamker.B

TrojanSpy:Win32/Gamker.B

Posted: April 16, 2014

Threat Metric

Threat Level: 9/10
Infected PCs: 251
First Seen: April 16, 2014
Last Seen: March 9, 2023
OS(es) Affected: Windows



TrojanSpy:Win32/Gamker.B is a Trojan that collects personal information from a target PC user for an attacker. After installation, TrojanSpy:Win32/Gamker.B makes system changes by creating a copy of itself into a certain location. TrojanSpy:Win32/Gamker.B creates the potentially malicious files on the PC. TrojanSpy:Win32/Gamker.B might contact a remote host in order to report a new infection to its author, download and run files, involving updates or other malware threats, receive configuration or other data, receive instructions from a remote cybercriminal and upload data taken from the compromised PC.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%windir%\tasks\videodriver.job File name: %windir%\tasks\videodriver.job
Mime Type: unknown/job
Group: Malware file
C:\Documents and Settings\<username>\application data\xypyq.exe File name: C:\Documents and Settings\<username>\application data\xypyq.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
C:\Documents and Settings\<username>\local settings\temp\e.tmp File name: C:\Documents and Settings\<username>\local settings\temp\e.tmp
File type: Temporary File
Mime Type: unknown/tmp
Group: Malware file
C:\Documents and Settings\<username>\local settings\temp\f.tmp File name: C:\Documents and Settings\<username>\local settings\temp\f.tmp
File type: Temporary File
Mime Type: unknown/tmp
Group: Malware file
Loading...