Home Malware Programs Backdoors Backdoor.PoisonIvy.j


Posted: February 13, 2007

PoisonIvy is a backdoor Trojan that gives the attacker unauthorized remote access to a compromised PC. PoisonIvy runs a web server that shows the directory structure of any specified local hard disk. The intruder can steal any file using a web-based interface. PoisonIvy automatically runs on every Windows startup. This places any financial or banking information stored on your computer in severe jeopardy and represents a serious security risk.

File System Modifications

  • The following files were created in the system:
    # File Name File Size (bytes) File Hash
    1 buhtrojan.exe 10,240 1de8213dce05fd80bea50ca1e3aba430
    2 msswcx.exe 10,240 1de8213dce05fd80bea50ca1e3aba430

Use SpyHunter to Detect and Remove PC Threats

If you are concerned that malware or PC threats similar to Backdoor.PoisonIvy.j may have infected your computer, we recommend you start an in-depth system scan with SpyHunter. SpyHunter is an advanced malware protection and remediation application that offers subscribers a comprehensive method for protecting PCs from malware, in addition to providing one-on-one technical support service.

Download SpyHunter's Malware Scanner

Note: SpyHunter's free version is only for malware detection. If SpyHunter detects malware on your PC, you will need to purchase SpyHunter's malware tool to remove the malware threats. Learn more on SpyHunter. If you would like to uninstall SpyHunter for any reason, please follow these uninstall instructions. To learn more about our policies and practices, visit our EULA, Privacy Policy and Threat Assessment Criteria .

Why can't I open any program including SpyHunter? You may have a malware file running in memory that kills any programs that you try to launch on your PC. Tip: Download SpyHunter from a clean computer, copy it to a USB thumb drive, DVD or CD, then install it on the infected PC and run SpyHunter's malware scanner.