Aliases: a variant of Win32/Kryptik.AQIJ, Backdoor/Win32.Pushdo [AhnLab-V3], Win32.Troj.Generic.a.(kcloud), Gen:Variant.Kazy.97087 (B), Heuristic.BehavesLike.Win32.Suspicious-DTR.G [McAfee-GW-Edition], TR/Dropper.Gen [AntiVir], Gen:Variant.Kazy.88262 [F-Secure], W32/Pushdo.B, Trojan.ADH.2 [Symantec], Trojan.Ransom.Gen, Gen:Variant.Kazy.97087, BackDoor.Generic16.VDF [AVG], Backdoor.Win32.ZAccess [Ikarus], a variant of Win32/Kryptik.AQHV and Artemis!068A3C7DAC13 [McAfee-GW-Edition].

Technical Information

File System Details

Backdoor.Poison.BU creates the following file(s):
# File Name Size MD5 Detection Count
1 %APPDATA%\Microsoft\Windows\Start Menu\Programs\Startup\winupdate.exe 61,435 c3432c1bbdf17ebaf1e10392cf630847 15
2 C:\Program Files\Active WebCam\WebCam.exe 4,489,024 bed5861c51a26b5b54043df4ed09d7f0 12
3 %WINDIR%adiras.exe 32,768 7bec9f489ccd8d3f92125025f37db961 11
4 %APPDATA%\Adobe\sp.DLL 142,336 1958dc1152b4340c23736010f1987957 9
5 %USERPROFILE%tufymotsaneg.exe 37,320 5d880f0a8baf90ce1916ef58ca259fe3 3
6 %APPDATA%36731344547.exe 406,016 7deac6c59cf40593238d9c45ce2e1794 1
More files

Site Disclaimer is not associated, affiliated, sponsored or owned by the malware creators or distributors mentioned on this article. This article should NOT be mistaken or confused in being associated in any way with the promotion or endorsement of malware. Our intent is to provide information that will educate computer users on how to detect, and ultimately remove, malware from their computer with the help of SpyHunter and/or manual removal instructions provided on this article.

This article is provided "as is" and to be used for educational information purposes only. By following any instructions on this article, you agree to be bound by the disclaimer. We make no guarantees that this article will help you completely remove the malware threats on your computer. Spyware changes regularly; therefore, it is difficult to fully clean an infected machine through manual means.

Leave a Reply

Please DO NOT use this comment system for support or billing questions. For SpyHunter technical support requests, please contact our technical support team directly by opening a customer support ticket via your SpyHunter. For billing issues, please refer to our "Billing Questions or Problems?" page. For general inquiries (complaints, legal, press, marketing, copyright), visit our "Inquiries and Feedback" page.

HTML is not allowed.