Home / Spyware Encyclopedia / Backdoor.Aladino << Back

Recommendation to Automatically remove Backdoor.Aladino


Our products can remove Backdoor.Aladino and thousands of other Virus and Spyware automatically and instantly.

Backdoor.Aladino Details


  • Category Backdoor
  • Discovered 4/28/2009 1:21:31 PM
  • Modified 1/23/2020 10:56:04 AM
  • Threat Level High
  • Category Description
    A Backdoor is a software program that gives an attacker unauthorized access to a machine and the means for remotely controlling the machine without the user's knowledge. A Backdoor compromises system integrity by making changes to the system that allow it to be used by the attacker for malicious purposes unknown to the user.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
Backdoor.Win32.Agent.tj.exe 175141 3.1.1.833a03b0d81979676df0b04abeed3c7a6d 
BACKDOOR.WIN32.AGENT.T.EXE 159232  fcfcd829bc5f0be1d0721d0fa3299ae1 
Backdoor.Win32.Agent.ti.dll 47616  fb87410e58c0f7511df6b5df6dcbd5d1 
Backdoor.Win32.Agent.tk.exe 44032  d5e68f677f4172e71d2dea4eeb456fe0 
Backdoor.Win32.Agent.sy.exe 536576  d40e87b60bc211d8b5932e6a819c3a15 
lesxnmo.exe 536576  d40e87b60bc211d8b5932e6a819c3a15 
Backdoor.Win32.Agent.ta.exe 529409  b3a7afda023ab201afd82e7dd06495f5 
ieplugin.exe 529409  b3a7afda023ab201afd82e7dd06495f5 
msnrecover.exe 529409  b3a7afda023ab201afd82e7dd06495f5 
sysedl32.dll 50688  aa70cace0bf07b1515d9621612772bda 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"System"\"%DAS.AU.LS.APP-DATA%\System\svchost.exe /run"
..\System\CurrentControlSet\Services\SharedAccess\Parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List\"%DAS.AU.LS%\Temp\BACKDOOR.WIN32.AGENT.TK.EXE"\"%DAS.AU.LS%\Temp\BACKDOOR.WIN32.AGENT.TK.EXE:*:Enabled:Server"
..\Software\Microsoft\Windows\CurrentVersion\ShellComp\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"internet_plugin"\"%PF%\NetMeeting\ieplugin.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"ieplugins"\"%PF%\Internet Explorer\ieplugin.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"MSN_messengers"\"%PF%\MSN Messenger\msnrecover.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Config_Lader"\"%PF%\Messenger\msnrecover.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"lesxnmo"\"%win.sys32%\lesxnmo.exe"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware