Smart Data Recovery

By ESGI Advisor in Rogue Anti-Spyware Program | 1,232 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (1 votes, average: 5.00 out of 5)
Loading ... Loading ...
More... More

Smart Data Recovery Description

Image Screenshot

[+] Click Image to Enlarge

While a legitimate program named Smart Data Recovery exists, ESG security researchers have issued a warning about one of the many members of the FakeSysDef family of rogue defragmenters that goes by the same name. They are fairly easy to differentiate; while the Smart Data Recovery data recovery application helps computer users recover information from their hard drives, the Smart Data Recovery rogue defragmenter will enter a computer system without a computer user’s authorization and cause all kinds of problems.

The main problem with Smart Data Recovery is the fact that this application does not have any real system optimization or disk repair capabilities. Smart Data Recovery is a kind of malware known as a rogue defragmenter. These are fake security programs that attempt to scare the victim into believing that their computer system is severely damaged in order to convince the victim to purchase a useless bogus system optimization product. While the Smart Data Recovery data recovery program behaves normally, the Smart Data Recovery rogue defragmenter displays constant pop-up notifications, alarming error messages and causes browser redirects.

The Smart Data Recovery Rogue Defragmenter Belongs to the FakeSysdef Family of Malware

The FakeSysdef family of rogue defragmenters is quite large and is on the loose for a long time. Examples of clones of Smart Data Recovery that also belong to the FakeSysdef family of malware include such fake defragmenters as Smart HDD, Data Restore, Windows Diagnostic and Disk Optimizer. All of these applications have no way of fixing your hard drive or file system. Rather, they are designed to alarm computer users. Because of this, PC security researchers often refer to these kinds of infections as scareware.

The Smart Data Recovery scam is not complicated. Smart Data Recovery will attempt to scare the victim with a large number of error messages. Smart Data Recovery has also been known to change the infected computer system’s desktop image into another alarming error message (often similar to the Windows “Blue Screen of Death”), causing browser redirects, and disabling Windows components that are helpful in dealing with malware, such as the Windows Task Manager or System Restore. If your computer system is infected with Smart Data Recovery, you will find that you cannot remove this bogus defragmenter through normal means. To get rid of Smart Data Recovery it is necessary to use a reliable anti-malware program.

Type: Rogue AntiSpyware Programs

How Can You Detect Smart Data Recovery?

Smart Data Recovery Technical Report

As new Smart Data Recovery details are reported by our customers and findings from our Threat Research Center, we will update this section.

Fake message for Smart Data Recovery:

The following fake error message(s) appears for Smart Data Recovery:

Smart Data Recovery
Smart Data Recovery Firewall Alert
Smart Data Recovery has prevented a program from accessing the internet.
“iexplore.exe” is infected “Trojan-Dropper.Win32.Agent”. This worm has to tried to use “iexplore.exe” to connect to remove host and send your credit card information.

Smart Data Recovery Warning
Spyware.IEMonster activity detected. This form of spyware attempts to steal passwords from Internet Explorer, Mozilla Firefox, Outlook and other commonly used programs. Click here to immediately remove it with Smart Data Recovery.

Hard Drive Boot Sector Reading Error
During I/O system initialization, the boot device driver might have failed to initialize the boot device. File system initialization might have failed because it did not recognize the data on boot device.

System blocks were not found
This is most likely occurred because of hard disk failure.
This may also lead to a potential loss of data.

Critical Error!
Damaged hard drive clusters detected. Private data is at risk.

Critical Error
RAM memory usage is critically high. RAM memory failure.

‘How Smart Data Recovery Infects Your Computer’ Video

Smart Data Recovery Removal Details

Smart Data Recovery has typically the following processes in memory:

  • %Temp%\\[RANDOM CHARACTERS].dll
  • %Temp%\\[RANDOM CHARACTERS].exe

Smart Data Recovery creates the following files in the system:

  • %Documents and Settings%\[User_Name]\Desktop\Smart HDD.lnk
  • %Documents and Settings%\[User_Name]\Start Menu\Programs\Smart HDD
  • %Documents and Settings%\[User_Name]\Start Menu\Programs\Smart HDD\Uninstall Smart HDD.lnk
  • %UserProfile%\Desktop\Smart Data Recovery.lnk

Smart Data Recovery creates the following registry entries:

  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “[RANDOM CHARACTERS].exe”
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “[RANDOM CHARACTERS]”

Important Article Disclaimer

ESG Support Center

This entry was last updated on 04/30/12 and posted on 04/30/12. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Home | SpyHunter Risk Assessment Model | Privacy Policy | End User License Agreement | Additional Terms and Conditions
Copyright 2003-2012. Enigma Software Group USA, LLC. All Rights Reserved.