Home / Spyware Encyclopedia / Backdoor.Alicia << Back

Recommendation to Automatically remove Backdoor.Alicia


Our products can remove Backdoor.Alicia and thousands of other Virus and Spyware automatically and instantly.

Backdoor.Alicia Details


  • Category Backdoor
  • Discovered 12/7/2007 3:56:00 PM
  • Modified 7/24/2023 3:06:25 PM
  • Threat Level Critical
  • Category Description
    A Backdoor is a software program that gives an attacker unauthorized access to a machine and the means for remotely controlling the machine without the user's knowledge. A Backdoor compromises system integrity by making changes to the system that allow it to be used by the attacker for malicious purposes unknown to the user.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
Backdoor.Win32.Agent.xz.exe 29696  9ef5d8f1e1bd579f80ae89ababb027c4 
realched.exe 30208  2adfaba21c68f319ea7fd8e638980f54 
Backdoor.Win32.Agent.xu.exe 228352  1d1b599d7f316017ca9573701d8f1a15 
ospcont.dat 92519    
ospcont.dat 87803    
BACKDOOR.WIN32.AGENT.XR.EXE 737480  4970aebfd40c3b460f57888cac298e3009/04/2020
BACKDOOR.WIN32.AGENT.YD.EXE 159744 1.0.0.070e4a959ec7ab2da4145032d1f10418c 
08b33866.exe 637440  0c445359dbd5144f795703acc0eed79f22/07/2020
mkey.sys 420    
ykdtjdxn.dll 121364  034a68982aba812b532d29bceec238e2 

The following Registry Entries were created:
..\System\CurrentControlSet\Services\SharedAccess\Parameters\firewallpolicy\StandardProfile\AuthorizedApplications\List\"%DAS.AU.LS%\Temp\BACKDOOR.WIN32.AGENT.XR.EXE"\"%DAS.AU.LS%\Temp\BACKDOOR.WIN32.AGENT.XR.EXE:*:Enabled:BACKDOOR.WIN32.AGENT.XR.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"RkBellExe"\"%WIN.SYS32%\realched.exe"
..\System\CurrentControlSet\Services\xadx\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"kernell32"\"%win%\services.exe"
..\Software\araf15\(Default)
..\Software\Classes\iepl.iepl\(Default)
..\Software\Classes\iepl.iepl.1\(Default)
..\Software\Classes\Clsid\{0612f71e-934b-4d92-b8e8-2e29ea78eb03}\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0612F71E-934B-4D92-B8E8-2E29EA78EB03}\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware