Backdoor.ControlTotal.aj
|
Description:
|
Backdoor
|
|
Risk Level:
|
Critical
|
|
Date of First Occurence:
|
Monday, April 28, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Backdoor is a hidden method for bypassing normal computer authentication systems.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
SCAN & REMOVE NOW »
Geographical Distribution of Threat "Backdoor.ControlTotal.aj"
Threat Info
View All
Detected Items
- Detected Files:
%SystemDiskRoot%\Mako\DESCARGAS\Hack_Injector_Actualizados_Y_Echos_Por_Toph.exe
MD5: 3C360ECA1FBFB63820AF1235F4A32996 Size:326076
- Detected Files with variable Filenames:
MD5: 40A21995C9391473A58551C4A359CA51 Size: 84480
%USERPROFILE%\Configuracin local\Datos de programa\Ares\My Shared Folder\Manolo.scr
%WINDIR%\SVCHOST.EXE
%USERPROFILE%\Local\VirtualStore\Windows\system.win
%USERPROFILE%\Local\VirtualStore\Windows\command.win
%USERPROFILE%\Local\VirtualStore\Windows\boot.win
%USERDOCUMENTS%\Manolo.scr
%WINDIR%\boot.win
%WINDIR%\system.win
%DESKTOP%\Descargas\Juegos\jbl-dracula3.scr
%SystemDiskRoot%\Users\Invitado\Pictures\Egipto\P5110171.scr
%PROGRAMFILES%\WinRAR\WinRAR.win
and next 94 variations.
MD5: 3FF50D1DA0A62A31A189EB31217CD340 Size: 84480
%DESKTOP%\Nueva carpeta\alien vs predator\A2P.scr
%WINDIR%\command.win
I:\WINDOWS\Temp\yhkfdkkj.exe
I:\WINDOWS\Temp\xkxpox.exe
I:\WINDOWS\Temp\wsjntpjr.exe
I:\WINDOWS\Temp\tmdkqpsr.exe
I:\WINDOWS\Temp\tmcovwjo.exe
I:\WINDOWS\Temp\sppgcgwg.exe
I:\WINDOWS\Temp\qfwjzstf.exe
I:\WINDOWS\Temp\pmryejj.exe
I:\WINDOWS\Temp\orryeldv.exe
and next 53 variations.
MD5: DB016459A798DEA144E53605F1D8B2FE Size: 84480
%SystemDiskRoot%\System Volume Information\_restore{C9BE53ED-6638-47E7-A26B-BDB5B53F2ECF}\RP480\A0754724.scr
%WINDIR%\boot.win
%WINDIR%\system.win
%WINDIR%\command.win
%SystemDiskRoot%\System Volume Information\_restore{9047753C-0E1A-42FB-9D3A-5220729FE6B5}\RP335\A0144732.scr
%SystemDiskRoot%\System Volume Information\_restore{9047753C-0E1A-42FB-9D3A-5220729FE6B5}\RP334\A0144660.scr
%SystemDiskRoot%\System Volume Information\_restore{9047753C-0E1A-42FB-9D3A-5220729FE6B5}\RP324\A0141261.exe
%SystemDiskRoot%\System Volume Information\_restore{9047753C-0E1A-42FB-9D3A-5220729FE6B5}\RP320\A0140167.scr
%SystemDiskRoot%\System Volume Information\_restore{9047753C-0E1A-42FB-9D3A-5220729FE6B5}\RP318\A0139155.exe
%SystemDiskRoot%\System Volume Information\_restore{9047753C-0E1A-42FB-9D3A-5220729FE6B5}\RP314\A0138784.scr
%SystemDiskRoot%\System Volume Information\_restore{9047753C-0E1A-42FB-9D3A-5220729FE6B5}\RP314\A0138766.scr
and next 0 variations.
MD5: 6FBD47084F7A9754A12BA1B5E5E84DA1 Size: 84480
%SystemDiskRoot%\System Volume Information\_restore{9047753C-0E1A-42FB-9D3A-5220729FE6B5}\RP306\A0134900.scr
%PROGRAMFILES%\WinRAR\WinRAR.win
%WINDIR%\boot.win
%WINDIR%\system.win
%WINDIR%\command.win
%SystemDiskRoot%\System Volume Information\_restore{C9BE53ED-6638-47E7-A26B-BDB5B53F2ECF}\RP424\A0632143.scr
%SystemDiskRoot%\System Volume Information\_restore{C9BE53ED-6638-47E7-A26B-BDB5B53F2ECF}\RP424\A0629106.scr
%SystemDiskRoot%\System Volume Information\_restore{C9BE53ED-6638-47E7-A26B-BDB5B53F2ECF}\RP420\A0621882.scr
Detecting items list:
- Files by MD5
MD5: 3FF50D1DA0A62A31A189EB31217CD340 Size: 84480
MD5: 40A21995C9391473A58551C4A359CA51 Size: 84480
MD5: 3C360ECA1FBFB63820AF1235F4A32996 Size: 326076
MD5: 6FBD47084F7A9754A12BA1B5E5E84DA1 Size: 84480
MD5: DB016459A798DEA144E53605F1D8B2FE Size: 84480
«
Go to Software Database