Home / Spyware Encyclopedia / Backdoor.Ambush << Back

Recommendation to Automatically remove Backdoor.Ambush


Our products can remove Backdoor.Ambush and thousands of other Virus and Spyware automatically and instantly.

Backdoor.Ambush Details


  • Category Backdoor
  • Discovered 1/10/2014 6:42:43 AM
  • Modified 3/5/2024 7:04:24 PM
  • Threat Level High
  • Category Description
    A Backdoor is a software program that gives an attacker unauthorized access to a machine and the means for remotely controlling the machine without the user's knowledge. A Backdoor compromises system integrity by making changes to the system that allow it to be used by the attacker for malicious purposes unknown to the user.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
Backdoor.Win32.Agobot.adn.exe 294912  4f0ada0732898733fd588c26191909b6 
backdoor.win32.ambush 32768 1.0.0.1ff8ee24611e753e4bd38f498514331a3 
backdoor.win32.ambush.exe 32768 1.0.0.1702380007182bf5c75d5c1e2fecd6253 
80a29c265ec0387344cc14812deabca1.vir.exe 45056ICQ NetDetect Agent1.00b5e58f8b440493f37cf2c707119ef7e7 
8bb7bc08cb8d346b75cb27b0b98a00a2.vir.exe 32773 1.00.00018bb7bc08cb8d346b75cb27b0b98a00a2 
7d425f214741366d104298193c01563b.vir.exe 34041ICQ NetDetect Agent1.007d425f214741366d104298193c01563b 
backdoor.win32.ambush.exe 32768 1.0.0.1702380007182bf5c75d5c1e2fecd625323/09/2020
Backdoor.Win32.Ambush 32768 1.0.0.1702380007182bf5c75d5c1e2fecd625323/09/2020
d.exe 0ICQ NetDetect Agent1.001b88a1aad0d5899e3c81a015d2fedb6f26/05/2022
backdoor.win32.ambush.1d55ccc9653410c8444ba48106d05f0e.exe 32768  1d55ccc9653410c8444ba48106d05f0e05/03/2024

The following Registry Entries were created:
..\Software\Microsoft\OLE\"Micrsoft Intrnet Exploror"\"salmk.exe"
..\Software\Microsoft\Windows\CurrentVersion\RunServices\\"Micrsoft Intrnet Exploror"\"salmk.exe"
..\Software\Microsoft\Windows\CurrentVersion\RunServices\\"Microsoft Update 32"\"wininit.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Micrsoft Intrnet Exploror"\"salmk.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Microsoft Update 32"\"wininit.exe"
..\System\CurrentControlSet\Services\SVKP\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware