Home Malware Programs Trojans DNSChanger!fa

DNSChanger!fa

Posted: October 17, 2011

DNSChanger!fa is a dangerous Trojan infection used by cybercriminals to modify domain name server (DNS) settings of the targeted web browser. DNSChanger!fa causes much problems associated with online activities. DNSChanger!fa allows cybercriminals to gain remote access to the infected computer where malicious system changes have been executed. DNSChanger!fa spreads via unsafe files shared among PC users. DNSChanger!fa is able to rewrite critical Windows files into other Trojan files for the malicious actions to be performed on the affected PC. DNSChanger!fa may involve Alureon rootkit characteristics which help DNSChanger!fa to conceal its existence on the corrupted machine. DNSChanger!fa can also result in PC system errors and slowdowns. Remove DNSChanger!fa from the compromised computer system immediately after detection.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAM_FILES%\DNSChanger!fa File name: %PROGRAM_FILES%\DNSChanger!fa

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{Subkeys}HKEY_LOCAL_MACHINE\Software\DNSChanger!fa
Loading...