AlfaAntivirus

Description: Rogue Security Program
Risk Level: High
Date of First Occurence: Wednesday, June 04, 2008
Software Developer: (unknown)
Brief Info: Rogue/Suspect Anti-Spyware Product "Rogue/Suspect" means that these products are of unknown, questionable, or dubious value as anti-spyware protection.
Removal: This threat can be removed using "Spyware Terminator"

SCAN & REMOVE NOW »

Geographical Distribution of Threat "AlfaAntivirus"

Threat Info

View All

Detected Items

  1. Detected Files: %PROGRAMFILES%\alfaantivirus\Extra\plugins\UNACPU.DLL MD5: 46B810693C6DB63897949566248281FD Size:9728 %PROGRAMFILES%\alfaantivirus\Extra\plugins\BORLNDMM.DLL MD5: 232966BF4E5F15491481AC3958131A21 Size:22528 %PROGRAMFILES%\alfaantivirus\scnkrnl.dll MD5: 042252D3C062E18E50F97F1F36EFE718 Size:569344 %SYSDIR%\drivers\fomr.sys MD5: 6C10A4421F41A6884F55A53342D9FABF Size:46592 %PROGRAMFILES%\alfaantivirus\Extra\plugins\UNPEPACK.DLL MD5: 1E6250CE35D1F6F3AA5456D02967C0E9 Size:69211 %PROGRAMFILES%\alfaantivirus\Extra\plugins\UNPACKS2.DLL MD5: 5ECBB6C3B335F05B857AE0C56484B279 Size:73091 %PROGRAMFILES%\alfaantivirus\Extra\plugins\UNPACKS.DLL MD5: E17370296861D8A15F9C6BDD4B2C2DF0 Size:373419 %PROGRAMFILES%\alfaantivirus\Extra\plugins\UNPACK.DLL MD5: 4ECBF71A0EE92AD5133FE38F2DA1EA57 Size:331275 %PROGRAMFILES%\alfaantivirus\Extra\plugins\UNMIME.DLL MD5: DD1F43DB6001736E5F35C99EDFE4066F Size:44202 %PROGRAMFILES%\alfaantivirus\Extra\plugins\unamscan.dll MD5: DF6958E9BA1D73E7AEF47EF6C46281DF Size:47616 %PROGRAMFILES%\alfaantivirus\Extra\plugins\UNADBX.DLL MD5: 3F742797F3A89980159019FEB17A424B Size:286720 %PROGRAMFILES%\alfaantivirus\Extra\bstupd.exe MD5: 33E6A5DC2C5DC09F48F3DD86481AC006 Size:749568 %PROGRAMFILES%\alfaantivirus\sqlite3.dll MD5: 55012ADD096C9E6928AC096AEFFF253E Size:247232 %PROGRAMFILES%\alfaantivirus\RTasks.exe MD5: 0C5DDDFA0876723E82D2AF3D54350D88 Size:14336 %PROGRAMFILES%\alfaantivirus\guihlp.dll MD5: 10DEE2D0661A3EEDE8B59AEB5AFDAB0D Size:733184 %PROGRAMFILES%\alfaantivirus\rpt.dll MD5: 1CE5049636E628A74D048D8556A79A3A Size:163840 %PROGRAMFILES%\alfaantivirus\restbst.exe MD5: ABC2FF478AF405FFC139E6343D99DD06 Size:53248 %PROGRAMFILES%\alfaantivirus\fopnl.dll MD5: B7F458B57DE33A35B078714CD2D0238C Size:57344 %PROGRAMFILES%\alfaantivirus\bstact.exe MD5: ADF43D0275E1A16D50442B0D826828A2 Size:40960 %PROGRAMFILES%\AlfaAntivirus\unins000.exe MD5: 5DEE4D16CF064CACFAB66BFF8006D216 Size:682364
  2. Detected Files with variable Filenames:

Detecting items list:

  1. Files by Name %PROGRAMFILES%\alfaantivirus\bstact.exe %SYSDIR%\drivers\fomr.sys %PROGRAMFILES%\alfaantivirus\fomr.sys %PROGRAMFILES%\alfaantivirus\fopnl.dll %PROGRAMFILES%\alfaantivirus\restbst.exe %PROGRAMFILES%\alfaantivirus\rpt.dll %PROGRAMFILES%\alfaantivirus\scnkrnl.dll
  2. Files by MD5 MD5: ADF43D0275E1A16D50442B0D826828A2 Size: 40960 MD5: 6C10A4421F41A6884F55A53342D9FABF Size: 46592 MD5: B7F458B57DE33A35B078714CD2D0238C Size: 57344 MD5: ABC2FF478AF405FFC139E6343D99DD06 Size: 53248 MD5: 1CE5049636E628A74D048D8556A79A3A Size: 163840 MD5: 042252D3C062E18E50F97F1F36EFE718 Size: 569344
  3. Files by Directories %PROGRAMFILES%\alfaantivirus %COMMONFILES%\alfaantivirus
  4. Files by CLSID or Name CLSID=03B121E9-6152-48b5-BB38-B642B21C62BD
  5. Registry Keys HKLM\SOFTWARE\Classes\AppID\PopupG.DLL HKLM\SOFTWARE\Classes\AppID\{314F88D6-80CE-408a-9E8F-B2389B81E8B8} HKCR\AppID\{314F88D6-80CE-408a-9E8F-B2389B81E8B8} HKLM\SOFTWARE\Classes\AVIEBHO.IEFW HKLM\SOFTWARE\Classes\AVIEBHO.IEFW.2 HKLM\SOFTWARE\alfaantivirus HKLM\SOFTWARE\AlfaAntivirusDownloader

« Go to Software Database