Home / Spyware Encyclopedia / Backdoor.Akosch << Back

Recommendation to Automatically remove Backdoor.Akosch


Our products can remove Backdoor.Akosch and thousands of other Virus and Spyware automatically and instantly.

Backdoor.Akosch Details


  • Category Backdoor
  • Discovered 2/9/2009 5:09:00 PM
  • Modified 4/13/2020 10:03:48 AM
  • Threat Level High
  • Category Description
    A Backdoor is a software program that gives an attacker unauthorized access to a machine and the means for remotely controlling the machine without the user's knowledge. A Backdoor compromises system integrity by making changes to the system that allow it to be used by the attacker for malicious purposes unknown to the user.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
Backdoor.Win32.Agent.rw.exe 224256 1.0.0.1910e5b91e67518abb3c0c90304500514 
Backdoor.Win32.Agent.ry.exe 443392  f8efda265808e0f181339f26e61811cb 
Backdoor.Win32.Agent.st.exe 131072  eef735b4c3418c8edc4b6001e5772106 
Backdoor.Win32.Agent.sn.dll 4096  e2baeb1c9e44092e531ca68535378fdf 
Backdoor.Win32.Agent.sl.exe 36864  b480c34e95e9b84d1dfb7e4a82e6e481 
msdirectx.sys 6656  8e1e197d413b12baed58bd07e4112092 
svhosst.dll 34004  7f73d3b33310206bb69cde2e626049cd 
Backdoor.Win32.Agent.sj.exe 170121  7e7d881ebf5f56c13c007d09c3ab1c29 
l074.exe 170121  7e7d881ebf5f56c13c007d09c3ab1c29 
BACKDOOR.WIN32.AGENT.S.EXE 216560  2d7dfe9f15447be646d7aacf9aced19d11/02/2020

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"desktop"\"%DAS.AU.LS%\Temp\BACKDOOR.WIN32.AGENT.RW.EXE"
..\Software\Microsoft\Windows\CurrentVersion\RunServices\\"strtas"\"l074.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"strtas"\"l074.exe"
..\System\CurrentControlSet\Services\SVKP\(Default)
..\Software\ITBILL\(Default)
..\System\CurrentControlSet\Services\msdirectx\(Default)
..\System\CurrentControlSet\Services\ZPMODEMSYSNTDRVNT\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Systemstart"\"%root%\hkey_local_machine\software\microsoft\windows\currentversion\run\systemstart.exe"

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware