AntiSpywareControl

Description: Rogue Security Program
Risk Level: High
Date of First Occurence: Wednesday, April 16, 2008
Software Developer: (unknown)
Brief Info: Rogue/Suspect Anti-Spyware Product "Rogue/Suspect" means that these products are of unknown, questionable, or dubious value as anti-spyware protection.
Removal: This threat can be removed using "Spyware Terminator"

SCAN & REMOVE NOW »

Geographical Distribution of Threat "AntiSpywareControl"

Threat Info

View All

Detected Items

  1. Detected Files: %SYSDIR%\Drivers\FMTR.sys MD5: D559C2A05527F25F907ED02FA8DE4B3F Size:46592 MD5: 316B198DAEA435B953DB51D3549497EA Size:46592 MD5: 5F8733CBC62F1820C0C02296970F5665 Size:46592 MD5: D6DF8D59F101FDE4C2A27C91AFC89AC0 Size:46592 MD5: A76C8C7A3371C00A816B6718E9EA84DC Size:46592 MD5: 419889B0758C61A8308F70A8235B6685 %PROGRAMFILES%\1\Tools\pg.dll MD5: EB2D3F772AB4207295341C2EE5F79ADC Size:139264 %PROGRAMFILES%\TrustedAntivirus\pgs.exe MD5: 4CEFF81A59AEB94424E968E748273777 Size:2023424 %PROGRAMFILES%\AntiSpywareControl\scnkrnl.dll MD5: 0EB39EB635EFC98056FCC0224D7EFC00 Size:569344 %SYSDIR%\drivers\FMTR.sys MD5: 52F5EFF8F60B5A5F6C69E889D234087E Size:46592
  2. Detected Files with variable Filenames: MD5: 9D51DA08543F1496FD0E6039D49BF9C9 Size: 46592 %SYSDIR%\Drivers\dhlp.sys %SystemDiskRoot%\ErdUndoCache\rp33\A0002963.sys %SystemDiskRoot%\System Volume Information\_restore{40B70121-7FC1-4057-9C2D-765003B2A806}\RP2\A0005028.sys h:\WINDOWS\system32\drivers\dhlp.sys %SystemDiskRoot%\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP253\A0021823.sys %SystemDiskRoot%\System Volume Information\_restore{DDE5ACC4-4510-4505-93A0-AC1A24C741BF}\RP376\A0718670.sys %SystemDiskRoot%\System Volume Information\_restore{4EF9D400-6188-434F-8F51-9912F157D3FA}\RP99\A0058595.sys %SystemDiskRoot%\System Volume Information\_restore{D397B72E-1769-4094-994A-E66D775351DC}\RP28\A0048593.sys %SystemDiskRoot%\System Volume Information\_restore{06112384-8E95-4EC8-95E2-7B96B887A707}\RP27\A0006928.sys %SystemDiskRoot%\System Volume Information\_restore{1B302D1F-C485-412C-BC12-D49693A43019}\RP154\A0096491.sys %SystemDiskRoot%\System Volume Information\_restore{1B302D1F-C485-412C-BC12-D49693A43019}\RP153\A0095427.sys and next 4 variations. MD5: 67634215B5534ECF00FB11D08B4E718B Size: 271360 %COMMONFILES%\AntiSpywareMaster\ugac.exe %COMMONFILES%\TrustedAntivirus\ugac.exe %COMMONFILES%\PCVirusSweeper\ugac.exe %COMMONFILES%\WinSecureAv\ugac.exe %SystemDiskRoot%\System Volume Information\_restore{321424EF-1A6C-47FB-8570-DA4CA3D6F7BD}\RP104\A0044145.exe %SystemDiskRoot%\System Volume Information\_restore{864AFD4C-1FBA-4561-BCB2-DBD479CC7D05}\RP40\A0212856.exe F:\Program Files\Common Files\AntiSpywareControl\ugac.exe %TEMP%\TMP64C.tmp %COMMONFILES%\AntivirusForAll\ugac.exe.ren %COMMONFILES%\SpyGuardPro\ugac .exe %COMMONFILES%\AVSystemCare\ugac.exe and next 14 variations. MD5: B352C9979A87569004567750CF5F57C4 Size: 712704 %PROGRAMFILES%\BarreraIntegral\Up\gup.exe %PROGRAMFILES%\VirusAlarma\Up\gup.exe %SystemDiskRoot%\System Volume Information\_restore{36C6A337-65BD-4457-B7CF-F05AD8E2B4B1}\RP115\A0222639.exe %PROGRAMFILES%\SpyGuardPro\Up\gup.exe %PROGRAMFILES%\PC-Prot\Up\gup.exe %PROGRAMFILES%\1\Up\gup.exe %PROGRAMFILES%\WinSecureAv\Up\gup.exe %SystemDiskRoot%\System Volume Information\_restore{1B302D1F-C485-412C-BC12-D49693A43019}\RP154\A0096535.exe %SystemDiskRoot%\System Volume Information\_restore{1B302D1F-C485-412C-BC12-D49693A43019}\RP153\A0095466.exe %PROGRAMFILES%\BastioneAntivirus\Up\gup.exe %SystemDiskRoot%\System Volume Information\_restore{2F5FB1CE-BC66-4E36-B4AC-BD2AE236E503}\RP418\A0046484.exe MD5: EBD61126D28DC4DC943A782343524A6D Size: 425984 %COMMONFILES%\BarreraIntegral\bm.exe %COMMONFILES%\WINSECUREAV\BM.EXE %COMMONFILES%\ExterminadorDeVirus\bm.exe %COMMONFILES%\AntivirusMagique\bm.exe %COMMONFILES%\VirusAlarma\bm.exe %COMMONFILES%\1202509421\bm.exe %SystemDiskRoot%\System Volume Information\_restore{3D72B250-312A-4580-A502-3CB37A486454}\RP1\A0000135.exe %SystemDiskRoot%\System Volume Information\_restore{3D72B250-312A-4580-A502-3CB37A486454}\RP0\A0000021.exe %SystemDiskRoot%\System Volume Information\_restore{321424EF-1A6C-47FB-8570-DA4CA3D6F7BD}\RP104\A0044144.exe e:\found.000\file0000.chk %COMMONFILES%\AVSystemCare\bm.exe and next 19 variations. MD5: 683567B2280A672E0CB92E4998EBC1BC Size: 57344 %PROGRAMFILES%\AVSYSTEMCARE\fopnl.dll %PROGRAMFILES%\1\FOPNL.dll %SystemDiskRoot%\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP40\A0034914.dll MD5: 72541878B96F7B06A23DA1FEE863D4FE Size: 1100288 %TEMP%\iefwbho.dll %PROGRAMFILES%\1\Tools\IEFWBHO.dll %PROGRAMFILES%\BestsellerAntivirus\Tools\IEFWBHO.dll %PROGRAMFILES%\TrustedAntivirus\Tools\IEFWBHO.dll MD5: A508AD884614A1262E876DBE0D7B8EA9 Size: 163840 %PROGRAMFILES%\AVSYSTEMCARE\rpt.dll %PROGRAMFILES%\1\rpt.dll %PROGRAMFILES%\TrustedAntivirus\rpt.dll MD5: 0CFFCDE710F2B323F7E4A78ED5937219 Size: 53248 %PROGRAMFILES%\AVSYSTEMCARE\Restart.exe %PROGRAMFILES%\SpyGuardPro\Restart.exe %PROGRAMFILES%\AntivirusPCSuite\Restart.exe MD5: 28FD70A5367C74EAA98E3B2C84A2C8C7 Size: 569344 %PROGRAMFILES%\AllertaMinacce\scnkrnl.dll %PROGRAMFILES%\1\scnkrnl.dll %PROGRAMFILES%\VirusAlarma\scnkrnl.dll %PROGRAMFILES%\SpyGuardPro\scnkrnl.dll %PROGRAMFILES%\AntivirusPCSuite\scnkrnl.dll MD5: 077C99DDFC78BAC0F5E0684D9EFD1C1F Size: 40960 %PROGRAMFILES%\AllertaMinacce\Activate.exe %PROGRAMFILES%\VirusAlarma\Activate.exe %SystemDiskRoot%\System Volume Information\_restore{36C6A337-65BD-4457-B7CF-F05AD8E2B4B1}\RP115\A0222640.exe %PROGRAMFILES%\1\Activate.exe MD5: 5F8733CBC62F1820C0C02296970F5665 Size: 46592 %SYSDIR%\Drivers\FMTR.sys %PROGRAMFILES%\SpyGuardPro\FMTR.sys %PROGRAMFILES%\AntivirusPCSuite\FMTR.sys MD5: AFB42A0B7218569AA2252F539B9E63E4 Size: 154890 %COMMONFILES%\1\ugcw.exe %COMMONFILES%\WinSpyControl\ugcw.exe %COMMONFILES%\AVSystemCare\ugcw.exe MD5: 5B35EC8D59D9805EB4C06C2DF371E86E Size: 14336 %PROGRAMFILES%\WinSecureAv\RTasks.exe %SystemDiskRoot%\System Volume Information\_restore{0ECD54B3-65D3-4574-AD04-FFF49E9BDB37}\RP79\A0040182.exe

Detecting items list:

  1. Files by Name %PROGRAMFILES%\AntiSpywareControl\Activate.exe %PROGRAMFILES%\AntiSpywareControl\FMTR.sys %PROGRAMFILES%\AntiSpywareControl\fopnl.dll %PROGRAMFILES%\AntiSpywareControl\Restart.exe %PROGRAMFILES%\AntiSpywareControl\rpt.dll %PROGRAMFILES%\AntiSpywareControl\scnkrnl.dll %PROGRAMFILES%\AntiSpywareControl\pgs.exe %PROGRAMFILES%\AntiSpywareControl\RTasks.exe %PROGRAMFILES%\AntiSpywareControl\Tools\IEFWBHO.dll %PROGRAMFILES%\AntiSpywareControl\Tools\pg.dll %PROGRAMFILES%\AntiSpywareControl\Up\gup.exe %COMMONFILES%\AntiSpywareControl\bm.exe %COMMONFILES%\AntiSpywareControl\ugac.exe %COMMONFILES%\AntiSpywareControl\ugcw.exe %SYSDIR%\drivers\dhlp.sys %SYSDIR%\drivers\FMTR.sys
  2. Files by MD5 MD5: 077C99DDFC78BAC0F5E0684D9EFD1C1F Size: 40960 MD5: 5F8733CBC62F1820C0C02296970F5665 Size: 46592 MD5: 683567B2280A672E0CB92E4998EBC1BC Size: 57344 MD5: 0CFFCDE710F2B323F7E4A78ED5937219 Size: 53248 MD5: A508AD884614A1262E876DBE0D7B8EA9 Size: 163840 MD5: 28FD70A5367C74EAA98E3B2C84A2C8C7 Size: 569344 MD5: 4CEFF81A59AEB94424E968E748273777 Size: 2023424 MD5: 5B35EC8D59D9805EB4C06C2DF371E86E Size: 14336 MD5: 72541878B96F7B06A23DA1FEE863D4FE Size: 1100288 MD5: EB2D3F772AB4207295341C2EE5F79ADC Size: 139264 MD5: B352C9979A87569004567750CF5F57C4 Size: 712704 MD5: EBD61126D28DC4DC943A782343524A6D Size: 425984 MD5: 67634215B5534ECF00FB11D08B4E718B Size: 271360 MD5: AFB42A0B7218569AA2252F539B9E63E4 Size: 154890 MD5: 9D51DA08543F1496FD0E6039D49BF9C9 Size: 46592 MD5: 5F8733CBC62F1820C0C02296970F5665 Size: 46592
  3. Files by Directories %COMMONFILES%\AntiSpywareControl %PROGRAMFILES%\AntiSpywareControl

« Go to Software Database