Home Malware Programs Dialers Troj/Dialer-HD

Troj/Dialer-HD

Posted: May 13, 2010

Troj/Dialer-HD is a malicious backdoor Trojan that runs in the background and allows remote access to the compromised system. Troj/Dialer-HD can download a pornographic dialer program that will attempt to connect to an extremely expensive international phone number, using your computers modem, and will then download pornographic content. Troj/Dialer-HD will then produce annoying pop-ups and will try to convince you to purchase a useless anti-virus program to rid the system of the dialer. Do not fall for this trickery and have Troj/Dialer-HD removed immediately.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %CommonPrograms%\ngskicker\ngskicker.lnk
    2 %ProgramFiles%\ngskicker\appdata.g
    3 %ProgramFiles%\ngskicker\appdata.n
    4 %ProgramFiles%\ngskicker\appdata.s
    5 %ProgramFiles%\ngskicker\MP\WAR\ngs-7a.exe
    6 %ProgramFiles%\ngskicker\MP\WAR\ngs-7b.exe
    7 %ProgramFiles%\ngskicker\MP\WAR\ngs-7c.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}{F4F07767-104A-485C-AE95-125DD56A9163}_is1]
Loading...