|Backdoor.Threadsys is a backdoor Trojan horse that connects to a predefined server and sends confidential information, including system information and captured keystrokes. The Trojan can receive information, allowing unauthorized remote access.
Attempts to copy itself to %Windir%\System\Iexplorer0.exe.
Creates the following plain text configuration files:
It adds the value:
to the registry key:
Remove it from startup by antivirus (also check How To Remove section)Startup Optimizer.