Thread
:
Data Recovery
View Single Post
#
10
Posted to alt.home.repair
Terry Coombs[_2_]
external usenet poster
Posts: 3,115
Data Recovery
wrote:
On Thu, 8 May 2014 11:15:18 -0500, "Terry Coombs"
wrote:
Alrighty kids , this program is a carrier for
Win32/PolyCrpt.dropper. which installs from the
www.securelist.com
website a.. Backdoor.Win32.Swz.hb
Ensures subsequent autorun of installed files:
by writing to autorun keys in the system registry
Injects its code into the specific processes
Adds the following programs to the list of trusted applications:
Connects to specific Internet addresses
Creates unique identifiers to flag its presence in the system
I'll be deleting this file w/out installing . Y'all have been
warned ...
Are you sure this is loaded in this program? I did install it, my
virus scanner was OK with it and I do not find any of the indications
of it that are described on a couple security sites (nothing strange
in the "run" entries of the registry etc)
I got the information from the comments on the free site . I don't pretend
to know much about registry stuff , but I do know I don't play around there
..
--
Snag
Reply With Quote
Terry Coombs[_2_]
View Public Profile
Find all posts by Terry Coombs[_2_]