Home Malware Programs Fake Warning Messages System is vulnerable to attacks

System is vulnerable to attacks

Posted: August 31, 2009

"System is vulnerable to attacks" is a fake security alert generated by the fake spyware remover Trust Ninja. "System is vulnerable to attacks" pop-up reads as follows:

"System is vulnerable to attacks.
Attention: DANGER!
TrustNinja detected that This PC NOT PROTECTED. Currently installed malware application cause:
Annoying advertisements wasting your traffic.
Slow page downloading speed. Web browser is not working properly
Cyber thieves get access to credit card.
Criminals will steal your personal data and photos.
Hackers will get access to email box, personals, hosting and internet services. They will use your computer and IP address for illegal purposes.
Register TrustNinja to activate protection from malware attacks. Click "Protect" to register software and run protection."

"System is vulnerable to attacks" seeks to trick you into believing your PC is infected or has been compromised, prompting you to purchase and download Trust Ninja in order to combat these threats. Do not be fooled, and remove Trust Ninja as soon as possible.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 data.bin
    2 Homepage.lnk 1
    3 license.txt
    4 nsProcess.dll 3
    5 nsSCM.dll
    6 TrustNinja.exe
    7 TrustNinja.lnk
    8 TrustNinjaSvc.exe
    9 Uninstall.lnk 2

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run TrustNinjaHKEY_CURRENT_USER\Software\TrustNinjaHKEY_LOCAL_MACHINE\SOFTWARE\TrustNinjaHKEY..\..\..\..{RegistryKeys}HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_TRUSTNINJASVCHKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_TRUSTNINJASVC\0000HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_TRUSTNINJASVC\0000\ControlHKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TrustNinjaSvcHKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TrustNinjaSvc\EnumHKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\TrustNinjaSvc\SecurityHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_TRUSTNINJASVCHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_TRUSTNINJASVC\0000HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_TRUSTNINJASVC\0000\ControlHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TrustNinjaSvcHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TrustNinjaSvc\EnumHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TrustNinjaSvc\SecurityHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}TrustNinja
Loading...