Friday, June 21, 2013

HOW TO: Remove Backdoor.Makadocs from Windows 8 ?


First malware for Microsoft Windows 8 goes viral, and it uses Google Docs as a proxy to establish connection with the Hacker. Microsoft has released windows 8 couple of weeks ago officially and we got the first malware that started to spread across the web faster. This Backdoor.Makadocs also affects previous editions of windows operating system. Microsoft is yet to release any solution to this malware, but symantec has provided removal tool for backdoor.makadocs malware.
Microsoft Windows 8 has improved security in place compared to its previous editions. Third party applications are really the best choice for hackers to focus on and create malware and spread them to gain access get more victims. Backdoor.Makadocs is a new malware variant for Windows OS which actually uses Google Docs services as a Proxy to establish remote connection from infected computers. This actually spreads via RTFMicrosoft Word document which got marked as Trojan.Dropper.

Remove Backdoor.Makadocs Malware

Download removal tool for Backdoor.Makadocs malware from Symantec website now and clean your PC, Laptop that has Windows installed in it. Download Norton Power Eraser and Run it on your computer to start cleaning up any malware infection in your computer. As this malware variant affects almost any windows operating system, it is important for you to run this clean up utility to check whether your computer got infected with this malware or not. Here are the properties of Backdoor.Makadocs malware which shows the level of security risk.
  • Backdoor.Makadocs can change your Web Browser Settings
  • Backdoor.Makadocs shows commercial advertisements on your windows desktop
  • Backdoor.Makadocs Establishes remote connection using your Internet
  • Backdoor.Makadocs can run in stealth mode, which means, it can run as a background process without listed in Taskmanager
It is important to clean up the registry as well if the scanner detects any infection in your computer. If you are using the above suggested tool then you dont have to do it manually. But for verification here i list theWindows Registry entries that will get infected and modified with this Backdoor.Makadocs malware.
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “.exe”
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “”
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “CertificateRevocation” = ’0′
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings “WarnonBadCertRecving” = ’0′
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop “NoChangingWallPaper” = ’1′
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations “LowRiskFileTypes” = ‘/{hq:/s`s:/ogn:/uyu:/dyd:/c`u:/bnl:/ble:/sdf:/lrh:/iul:/iulm:/fhg:/clq:/kqf:/`wh:/lqf:/lqdf:/lnw:/lq2:/l2t:/v`w:/rbs:’
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Attachments “SaveZoneInformation” = ’1′
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableTaskMgr” = ’1′
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system “DisableTaskMgr” = ’1′
  • HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download “CheckExeSignatures” = ‘no’
  • HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main “Use FormSuggest” = ‘yes’
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced “Hidden” = ’0′
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced “ShowSuperHidden” = 0′
Backdoor.Makadocs malware can also change your windows system files and it is important to run a full system scan using an Antivirus software. Make sure you have updated your Antivirus software or Internet Security software to the latest version in order get complete security and protection against these latestmalware threats. This new malware also has Trojan and Keyloggers in it, which can increase the security risk by sending all the keystrokes from your computer to the attacker remotely.
So it is really important to run a full system scan to find backdoor.makadocs infection on your Windows PCor Laptop. Then use the suggested Norton tool if you dont have any antivirus installed on your computer. It is not a recommended to use Windows systems without any antivirus software, as the chances of security risk are pretty high. Its not about the operating system, its about the third party applications, pen drives and any other internet downloads that you normally use with your computer. We recommend Bitdefender antivirus and Kaspersky antivirus software usually to keep the windows system security always the best. We do let our readers know whenever there are some discount coupon codes or promotional codes available to save some cash while they purchase or renew the antivirus software.
 You may also use any third party malware removal tools that you have used before. Also i like to recommend you to not download any malware removal tool from advertisements shows on some websites.
We will update this article with new backdoor makadocs removal tools when they come from various other antivirus software providers as well. Thanks for reading and you may now share this post to let your friends and followers perform a quick scan and clean up their PC as well.

0 comments:

Post a Comment