BKDR_ZACCESS.SMQQ is a backdoor Trojan infection and new variation of Sirefef/ZeroAccess rootkit, which uses user-mode technique to secretly load its malevolent code, instead of using common rootkit techniques. BKDR_ZACCESS.SMQQ has a responsibility yo patch the process named ’services.exe’. BKDR_ZACCESS.SMQQ is distrobuted by bundling the main malware in crack/keygen programs or game installers. BKDR_ZACCESS.SMQQ can also hide itself as a required codec that needs to be installed for playing a downloaded movie via peer-to-peer (P2P) applications, which can be detected on websites dedicated to keygen applications or in P2P services.
How Can You Detect BKDR_ZACCESS.SMQQ?
BKDR_ZACCESS.SMQQ Removal Details
BKDR_ZACCESS.SMQQ has typically the following processes in memory:
- K-Lite Codec Pack.exe