Threat Database Backdoors Backdoor.Win32.Poison.fdb

Backdoor.Win32.Poison.fdb

By SpideyMan in Backdoors

Backdoor.Win32.Poison.fdb is a Backdoor program that appears in most false security scans and fake system alerts generated by rogue anti-spyware application, Advanced Spyware Detect. The main purpose of Backdoor.Win32.Poison.fdb is to frighten you into believing your computer is infected with serious threats, and trick you into purchasing Advanced Spyware Detect, a product that neither detects nor protects against parasites.

File System Details

Backdoor.Win32.Poison.fdb may create the following file(s):
# File Name Detections
1. c:\Program Files\Advansed Spyware Detector\asd.exe.manifest
2. c:\Program Files\Advansed Spyware Detector\alert.wav
3. C:\Documents and Settings\\Start Menu\Programs\Advansed Spyware Detector\Uninstall.lnk
4. c:\Program Files\Advansed Spyware Detector\av.db
5. c:\Program Files\Advansed Spyware Detector\asd.chm
6. C:\Documents and Settings\\Start Menu\Programs\Advansed Spyware Detector\Advansed Spyware Detector.lnk
7. c:\Program Files\Advansed Spyware Detector\wallpapper.jpg
8. c:\Program Files\Advansed Spyware Detector\asd.log
9. C:\Documents and Settings\\Start Menu\Programs\Advansed Spyware Detector\Advansed Spyware Detector Help.lnk
10. %UserProfile%\Desktop\Manual scanner.lnk

Registry Details

Backdoor.Win32.Poison.fdb may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon "Userinit" => "C:\WINDOWS\system32\userinit.exe,C:\Program Files\Advansed Spyware Detector\asd.exe -m"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main "Start Page" => "http://samorukova.com?id=1228468452073"
HKEY_CURRENT_USER\Software\AdvSpywareDetect

Trending

Most Viewed

Loading...