Troj/Agent-GXB reads information from foreground windows on the computer.
Troj/Agent-GXB sends out the information obtained using a combination of SSL connections and email.
Troj/Agent-GXB inserts its filename into the following registry entry:
HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications
List