Home Malware Programs Trojans Trojan.Win32.FraudPack.apxz

Trojan.Win32.FraudPack.apxz

Posted: April 20, 2010

Trojan.Win32.FraudPack.apxz (also referred to as Trojan.FakeAV or Troj/FakeAV-BDE) is the main Trojan related to Security Central. Trojan.Win32.FraudPack.apxz has the ability to redirect the browser to rogue websites working for Security Central. Do not give this Trojan the chance to do its dirty work and have it removed immediately once detected.

Aliases

Troj/FakeAV-BDE

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Documents and Settings%\Desktop\Security Central.lnk
    2 %Documents and Settings%\StartMenu\Security Central\Security Central.lnk
    3 %ProgramFiles%\Security Central\Security Central.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\1208DC8443EFD8854E6DB36579873E06HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run Security Central.exe
Loading...