Backdoor.Hacarmy.D is a Backdoor Trojan horse that gives an attacker control over a compromised computer.
When Backdoor.Hacarmy.D runs, it does the following:
Copies itself as %System%\ZoneLockup.exe.
Adds the value: "Winsock32driver"="ZoneLockup.exe"
to the registry key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Attempts to connect to an IRC server at port 6667. If successful, it allows the remote attacker to perform some of the following actions:
- Download and execute files
- Terminate processes
- Steal system information, such as operating system information, system uptime, current user name, IP address, and host name
Automatic removal: Use RegRun Startup Optimizer to remove this adware from startup.
Removal: ZoneLockup.exe is removed by RegRun.
Read more... Removal instructions...
Recommended software:
UnHackMe - easy removal Rootkits/Adware/Spyware.
http://www.unhackme.com
RegRun Security Suite - removal and protection.
http://www.regrun.com
RegRun Reanimator - free removal tool.
greatis.com/reanimator
RegRun - User's Choice
Vista Programs - full info...
What is hidden in MSDN?
.NET Secrets Revealed
Why software developers prefer Win32.FreeTechSecrets.com?
All Unix Manuals in Alphabetical Order
C# controls for .NET in 3 simple steps.
Constantly updated. Last update:
August 25 2008
Interesting information about Vista programs...
Need consultation?
Would you like to add your opinion?