Home Malware Programs Browser Hijackers besecuredtoday.com

besecuredtoday.com

Posted: September 26, 2007

Besecuredtoday.com hijacker is a variant of Trojan.Zlob. It hijacks your homepage and redirects your IE homepage to "www.besecuredtoday.com". Besecuredtoday.com displays fake Warning messages stating that your computer is infected by W32.Myzor.fk@yf Trojan, for instance, which is not a real Trojan, and then it asks you to purchase other Trojan related rouge security programs such as, VirusProtectPro, SpyLocked, MalwareAlarm, AntiVirGear and so on. If your PC is hijacked by Besecuredtoday.com, then all your personal and financial may be in jeopardy because Besecuredtoday.com transfers back and forth information from the infected computer which makes it a potential for data security risk.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 afzdbl.dll
    2 bgwttyl.dll
    3 cfqbw.dll
    4 cqsfk.dll
    5 dxovx.dll
    6 dyrwls.dll
    7 fdpzgi.dll
    8 gtawclv.dll
    9 gusur.dll
    10 iesplugin.dll
    11 iesuninst.exe
    12 isaddon.dll
    13 isamini.exe
    14 isamonitor.exe
    15 khtbpdl.dll
    16 lrnjnzf.dll
    17 pmmon.exe
    18 pmsngr.exe
    19 pmuninst.exe
    20 psndz.dll
    21 tkrsw.dll
    22 ugofuq.dll
    23 vgibz.dll
    24 vjxwnn.dll
    25 wzhtjqo.dll
    26 zpuwriz.dll

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1c6fd4e6-49ce-4178-875b-df70eac260c5}HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D61D7E1A-6613-49CA-B6F9-51DB248E209D}HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{aa6d4f53-4c8d-4549-84d2-02d584acc4e9}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\VideoExtension HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{34E6F97C-34E0-4CE5-B92B-F83634BEDC01}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{34E6F97C-34E0-4CE5-B92B-F83634BEDC01}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5574E139-F59C-4bee-9A61-150B0D3A16C7}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper objects\{D61D7E1A-6613-49CA-B6F9-51DB248E209D}HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}IExplorer Security Plug-inInternet Explorer Secure BarMessenger Service
Loading...