Home / Spyware Encyclopedia / Exploit.ActivePost << Back

Recommendation to Automatically remove Exploit.ActivePost


Our products can remove Exploit.ActivePost and thousands of other Virus and Spyware automatically and instantly.

Exploit.ActivePost Details


  • Category Exploit
  • Discovered 9/1/2008 6:33:26 PM
  • Modified 4/19/2022 4:14:16 PM
  • Threat Level High
  • Category Description
    Exploits use vulnerabilities in operating systems and applications to achieve the same result. Or in other words, this is a type of malware containing a piece of software, a chunk of data, or sequence of commands that take advantage of a bug, glitch or vulnerability in order to cause unintended or unanticipated behavior to occur on computer software. This frequently includes such things as gaining control of a computer system or allowing privilege escalation or a denial of service attack.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
581739AC.EXE 45358  be8a5b07cb4546ae7a57150029bc4dbe 
581739AC.EXE 45358  be8a5b07cb4546ae7a57150029bc4dbe19/04/2022
9EE621B3.EXE 10240  1011d7cac0eca957b5bcca4c4027ff8e 
ac5ab6c2.exe 45358  2347e8af719ccc98f295646005b3bd08 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"svchost"\"%root%\input\20987_exploit.win32.activepost_20091123\ac5ab6c2.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"dskpsrvc"\"%DAS%\admin\Local Settings\Temp\53ff4ae1.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"rundll"\"%DAS%\admin\Local Settings\Temp\0de3a190.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"PRINTER SERVICE"\"%DAS%\admin\Local Settings\Temp\59953312.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"PROXY SERVER"\"%DAS.AU.LS%\TEMP\581739AC.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"proxy server"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware