Home Malware Programs Trojans TROJ_FAKEADB.US

TROJ_FAKEADB.US

Posted: April 22, 2013

TROJ_FAKEADB.US is a backdoor Trojan that installs a malicious Chrome add-on, with both of these PC threats receiving communications from remote servers that can be used for a variety of other attacks. The link to TROJ_FAKEADB.US is disguised as a fake update for Adobe Flash and is promoted through hijacked Facebook accounts, which disguise their links as links to a page that supposedly has nearly a hundred million 'Likes,' as per the Facebook tagging system. Given the all-too-typical infection methods used to install TROJ_FAKEADB.US, SpywareRemove.com malware researchers recommend all the usual web-browsing precautions against TROJ_FAKEADB.US, but deleting TROJ_FAKEADB.US and its fellow Trojan (labeled TROJ_EXTADB.US) always should use qualified anti-malware products that can detect any other PC threats that may be on your computer.

Why You Shouldn't Get Your Adobe Products from Secondhand Sources

TROJ_FAKEADB.US includes the basic functions of a standard backdoor Trojan, but also includes attacks related to hijacking your Facebook profile. These attacks allow links to TROJ_FAKEADB.US-distributing sites to be sent out through your Facebook feed, with the links most likely including the very same '90 million likes' tag line that caused your PC to become infected in the first place. However, TROJ_FAKEADB.US isn't installed through a drive-by-download, but, instead, through a fake Flash update, and SpywareRemove.com malware experts emphasize that a little good old reasoning can do a lot in avoiding the accidental download of Trojans posing as software updates.

If you do try to install the fake 'Flash update' that seemingly is needed to view the promoted site's media content, you will find the web page as intractable as ever – and your computer infected by TROJ_FAKEADB.US. TROJ_FAKEADB.US also installs a second Trojan, TROJ_EXTADB.US, which is specific to Chrome. Besides other Chrome-based attacks, TROJ_EXTADB.US also has been confirmed to block you from accessing Chrome's default plugin manager, which SpywareRemove.com malware experts note, prevents you from uninstalling TROJ_FAKEADB.US easily. On the other hand, TROJ_FAKEADB.US may be reconfigured for attacks against other applications, including browsers besides Chrome.

Keeping the Chain of Communication Clear of TROJ_FAKEADB.US's Distortions

As usually is true for malware that abuses social networks, your first response to a TROJ_FAKEADB.US infection should be to prevent your Facebook contacts from infecting themselves through links that are spammed through your hijacked account. After taking care of that, you can use any responsible anti-malware product to delete TROJ_FAKEADB.US along with TROJ_EXTADB.US.

However, before that even becomes necessary, multiple security protocols need to have failed. Appropriate browser security features should be able to block malicious content on sites that host TROJ_FAKEADB.US. Anti-malware programs should be able to detect TROJ_FAKEADB.US as malicious before TROJ_FAKEADB.US is installed. Finally, SpywareRemove.com malware researchers stress that you never, ever should install Flash updates from unusual sources – since such 'updates' are one of the most common ways of distributing malware like TROJ_FAKEADB.US.

Loading...