Gfg.exe: Difference between revisions
XxTheGreat12 (talk | contribs) No edit summary Tag: Manual revert |
No edit summary |
||
Line 2: | Line 2: | ||
|title = gfg.exe | |title = gfg.exe | ||
|image = Ghostgirl2.jpg | |image = Ghostgirl2.jpg | ||
|imagecaption = The gfg.exe icon. | |imagecaption = The "gfg.exe" icon. | ||
|maker = | |maker = Unknown | ||
|type = [[Application]] | |type = [[Application]] | ||
|date = September | |date = September 11th, 2002 | ||
}} | }} | ||
'''Gfg.exe''', also known as '''Troj/GhostGirl''', or simply '''GhostGirl''', is a Chinese [[screamer]] application created by an unknown | '''Gfg.exe''', also known as '''Troj/GhostGirl''', or simply '''GhostGirl''', is a Chinese [[screamer]] application created by an unknown user on September 11th, 2002. | ||
The icon is a low-resolution image of a yellow smiley face. When the user launches the application, it runs in the background, so it seems that nothing happened. However, after a short period of time, the application will suddenly display a full-screened picture of [[Crazy Ghost]] along with a loud scream. | The icon is a low-resolution image of a yellow smiley face. When the user launches the application, it runs in the background, so it seems that nothing happened. However, after a short period of time, the application will suddenly display a full-screened picture of [[Crazy Ghost]] along with a loud scream. | ||
The application will then begin to show the screamer at random intervals and repeatedly open and close the disk tray to annoy the user. The application will also run everytime the computer finishes its startup process by creating entries in the HKLM\Software\Microsoft\Windows\CurrentVersion\Run and HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices registry keys. | The application will then begin to show the screamer at random intervals and repeatedly open and close the disk tray to annoy the user. The application will also run everytime the computer finishes its startup process by creating entries in the '''"HKLM\Software\Microsoft\Windows\CurrentVersion\Run and HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices"''' registry keys. | ||
== Links == | == Links == | ||
<u>NOTE</u>: The following [[application]] contains a [[screamer]]. | <u>NOTE</u>: The following [[application]] contains a [[screamer]]. | ||
*'''Virus | *'''Virus info with download links:''' hybrid-analysis.com/sample/82d26220eeb8b13d253de579f604e7d7ac8abd03a2b98a924c5b14cfa4040cea/5723068caac2ed112bfd9d9d | ||
*'''Removal (contains the screamer image)''' | *'''Removal (contains the screamer image):''' vsantivirus.com/ghostgirl.htm | ||
{{Comments}} | {{Comments}} | ||
[[Category:Malware]] | [[Category:Malware]] | ||
[[Category:Applications]] | [[Category:Applications]] |
Revision as of 07:02, 30 September 2024
Gfg.exe, also known as Troj/GhostGirl, or simply GhostGirl, is a Chinese screamer application created by an unknown user on September 11th, 2002.
The icon is a low-resolution image of a yellow smiley face. When the user launches the application, it runs in the background, so it seems that nothing happened. However, after a short period of time, the application will suddenly display a full-screened picture of Crazy Ghost along with a loud scream.
The application will then begin to show the screamer at random intervals and repeatedly open and close the disk tray to annoy the user. The application will also run everytime the computer finishes its startup process by creating entries in the "HKLM\Software\Microsoft\Windows\CurrentVersion\Run and HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices" registry keys.
Links
NOTE: The following application contains a screamer.
- Virus info with download links: hybrid-analysis.com/sample/82d26220eeb8b13d253de579f604e7d7ac8abd03a2b98a924c5b14cfa4040cea/5723068caac2ed112bfd9d9d
- Removal (contains the screamer image): vsantivirus.com/ghostgirl.htm