Home Malware Programs Trojans Fakemess

Fakemess

Posted: December 1, 2008

Fakemess is a malignant Trojan which targets Chinese speaking users. Fakemess corrupts Windows registry and disables many security programs already installed. Fakemess displays pop ups attempting to deceive you about winning a prize.

If you click on the pop up, you will be redirected to a malicious website where you are prompted to log in to your instant messaging account. If you fall for this trick, hackers can steal account information. Fakemess also downloads additional malware onto your PC. If you believe that you are infected with the hideous Fakemess Trojan, remove it IMMEDIATELY.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Windir%\sysqq.dat

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\run\"[RANDOM CHARACTERS]" = "[PATH TO TROJAN]"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\run\"sasa" = "[PATH TO TROJAN]"
Loading...