RegistryDoctor2008
|
Description:
|
Rogue Security Program
|
|
Risk Level:
|
High
|
|
Date of First Occurence:
|
Thursday, October 30, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Rogue/Suspect Anti-Spyware Product
"Rogue/Suspect" means that these products are of unknown, questionable, or dubious value as anti-spyware protection.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
SCAN & REMOVE NOW »
Geographical Distribution of Threat "RegistryDoctor2008"
Threat Info
View All
Detected Items
- Detected Files:
%PROGRAMFILES%\RegistryDoctor2008\FreeApp.exe
MD5: 4676C0D6A72D5A7C11E895EE9844E094 Size:180
MD5: 68DFBD39E86C65E6448AC0572FBD8AC1 Size:366080
%PROGRAMFILES%\RegistryDoctor2008\registrydoctor.exe
MD5: D7CAC9A192FC1B181BDD5E7FCD9EB94B Size:829914
- Detected Files with variable Filenames:
MD5: CC4F492328A33418AED508294BD2A84E Size: 652240
%PROGRAMFILES%\AVG\avg5\RGD_FreeInstaller.exe
%PROGRAMFILES%\RegistryDoctor2008\registrydoctor.exe
%TEMP%\RGD_FreeInstaller.exe
O:\Program Files\RegistryDoctor2008\registrydoctor.exe
%USERPROFILE%\Local Settings\Temporary Internet Files\Content.IE5\MDP8NSS0\RGD_FreeInstaller[1].exe
%SystemDiskRoot%\System Volume Information\_restore{0945435B-1507-4631-B9A9-29A60025D023}\RP72\A0086840.exe
%USERPROFILE%\Impostazioni locali\Temporary Internet Files\Content.IE5\JX4LD10V\RGD_FreeInstaller[2].exe
%USERPROFILE%\Local\Temp\RGD_FreeInstaller.exe
%USERPROFILE%\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\062IDQ1L\RGD_FreeInstaller[1].exe
%SystemDiskRoot%\System Volume Information\_restore{CACA39C1-DAB7-4821-828F-32ABE3D705C7}\RP581\A0048114.exe
%SystemDiskRoot%\System Volume Information\_restore{CACA39C1-DAB7-4821-828F-32ABE3D705C7}\RP581\A0048060.exe
and next 6 variations.
MD5: 87B2F6A9FBC988314AD09A3E79C2C9D9 Size: 369152
%PROGRAMFILES%\RegistryDoctor2008\FreeApp.exe
%PROGRAMFILES%\RegistryDoctor2008\freeapp.exe.ren
Detecting items list:
- Files by Name
%PROGRAMFILES%\RegistryDoctor2008\registrydoctor.exe
- Files by MD5
MD5: CC4F492328A33418AED508294BD2A84E Size: 652240
- Files by Directories
%START_PROGRAMSALL%\RegistryDoctor2008
%PROGRAMFILES%\RegistryDoctor2008
- Registry Keys
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RegistryDoctor2008
«
Go to Software Database