AntiSpywareControl
|
Description:
|
Rogue Security Program
|
|
Risk Level:
|
High
|
|
Date of First Occurence:
|
Wednesday, April 16, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Rogue/Suspect Anti-Spyware Product
"Rogue/Suspect" means that these products are of unknown, questionable, or dubious value as anti-spyware protection.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
SCAN & REMOVE NOW »
Geographical Distribution of Threat "AntiSpywareControl"
Threat Info
View All
Detected Items
- Detected Files:
%SYSDIR%\Drivers\FMTR.sys
MD5: D559C2A05527F25F907ED02FA8DE4B3F Size:46592
MD5: 316B198DAEA435B953DB51D3549497EA Size:46592
MD5: 5F8733CBC62F1820C0C02296970F5665 Size:46592
MD5: D6DF8D59F101FDE4C2A27C91AFC89AC0 Size:46592
MD5: A76C8C7A3371C00A816B6718E9EA84DC Size:46592
MD5: 419889B0758C61A8308F70A8235B6685
%PROGRAMFILES%\1\Tools\pg.dll
MD5: EB2D3F772AB4207295341C2EE5F79ADC Size:139264
%PROGRAMFILES%\TrustedAntivirus\pgs.exe
MD5: 4CEFF81A59AEB94424E968E748273777 Size:2023424
%PROGRAMFILES%\AntiSpywareControl\scnkrnl.dll
MD5: 0EB39EB635EFC98056FCC0224D7EFC00 Size:569344
%SYSDIR%\drivers\FMTR.sys
MD5: 52F5EFF8F60B5A5F6C69E889D234087E Size:46592
- Detected Files with variable Filenames:
MD5: 9D51DA08543F1496FD0E6039D49BF9C9 Size: 46592
%SYSDIR%\Drivers\dhlp.sys
%SystemDiskRoot%\ErdUndoCache\rp33\A0002963.sys
%SystemDiskRoot%\System Volume Information\_restore{40B70121-7FC1-4057-9C2D-765003B2A806}\RP2\A0005028.sys
h:\WINDOWS\system32\drivers\dhlp.sys
%SystemDiskRoot%\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP253\A0021823.sys
%SystemDiskRoot%\System Volume Information\_restore{DDE5ACC4-4510-4505-93A0-AC1A24C741BF}\RP376\A0718670.sys
%SystemDiskRoot%\System Volume Information\_restore{4EF9D400-6188-434F-8F51-9912F157D3FA}\RP99\A0058595.sys
%SystemDiskRoot%\System Volume Information\_restore{D397B72E-1769-4094-994A-E66D775351DC}\RP28\A0048593.sys
%SystemDiskRoot%\System Volume Information\_restore{06112384-8E95-4EC8-95E2-7B96B887A707}\RP27\A0006928.sys
%SystemDiskRoot%\System Volume Information\_restore{1B302D1F-C485-412C-BC12-D49693A43019}\RP154\A0096491.sys
%SystemDiskRoot%\System Volume Information\_restore{1B302D1F-C485-412C-BC12-D49693A43019}\RP153\A0095427.sys
and next 4 variations.
MD5: 67634215B5534ECF00FB11D08B4E718B Size: 271360
%COMMONFILES%\AntiSpywareMaster\ugac.exe
%COMMONFILES%\TrustedAntivirus\ugac.exe
%COMMONFILES%\PCVirusSweeper\ugac.exe
%COMMONFILES%\WinSecureAv\ugac.exe
%SystemDiskRoot%\System Volume Information\_restore{321424EF-1A6C-47FB-8570-DA4CA3D6F7BD}\RP104\A0044145.exe
%SystemDiskRoot%\System Volume Information\_restore{864AFD4C-1FBA-4561-BCB2-DBD479CC7D05}\RP40\A0212856.exe
F:\Program Files\Common Files\AntiSpywareControl\ugac.exe
%TEMP%\TMP64C.tmp
%COMMONFILES%\AntivirusForAll\ugac.exe.ren
%COMMONFILES%\SpyGuardPro\ugac .exe
%COMMONFILES%\AVSystemCare\ugac.exe
and next 14 variations.
MD5: B352C9979A87569004567750CF5F57C4 Size: 712704
%PROGRAMFILES%\BarreraIntegral\Up\gup.exe
%PROGRAMFILES%\VirusAlarma\Up\gup.exe
%SystemDiskRoot%\System Volume Information\_restore{36C6A337-65BD-4457-B7CF-F05AD8E2B4B1}\RP115\A0222639.exe
%PROGRAMFILES%\SpyGuardPro\Up\gup.exe
%PROGRAMFILES%\PC-Prot\Up\gup.exe
%PROGRAMFILES%\1\Up\gup.exe
%PROGRAMFILES%\WinSecureAv\Up\gup.exe
%SystemDiskRoot%\System Volume Information\_restore{1B302D1F-C485-412C-BC12-D49693A43019}\RP154\A0096535.exe
%SystemDiskRoot%\System Volume Information\_restore{1B302D1F-C485-412C-BC12-D49693A43019}\RP153\A0095466.exe
%PROGRAMFILES%\BastioneAntivirus\Up\gup.exe
%SystemDiskRoot%\System Volume Information\_restore{2F5FB1CE-BC66-4E36-B4AC-BD2AE236E503}\RP418\A0046484.exe
MD5: EBD61126D28DC4DC943A782343524A6D Size: 425984
%COMMONFILES%\BarreraIntegral\bm.exe
%COMMONFILES%\WINSECUREAV\BM.EXE
%COMMONFILES%\ExterminadorDeVirus\bm.exe
%COMMONFILES%\AntivirusMagique\bm.exe
%COMMONFILES%\VirusAlarma\bm.exe
%COMMONFILES%\1202509421\bm.exe
%SystemDiskRoot%\System Volume Information\_restore{3D72B250-312A-4580-A502-3CB37A486454}\RP1\A0000135.exe
%SystemDiskRoot%\System Volume Information\_restore{3D72B250-312A-4580-A502-3CB37A486454}\RP0\A0000021.exe
%SystemDiskRoot%\System Volume Information\_restore{321424EF-1A6C-47FB-8570-DA4CA3D6F7BD}\RP104\A0044144.exe
e:\found.000\file0000.chk
%COMMONFILES%\AVSystemCare\bm.exe
and next 19 variations.
MD5: 683567B2280A672E0CB92E4998EBC1BC Size: 57344
%PROGRAMFILES%\AVSYSTEMCARE\fopnl.dll
%PROGRAMFILES%\1\FOPNL.dll
%SystemDiskRoot%\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP40\A0034914.dll
MD5: 72541878B96F7B06A23DA1FEE863D4FE Size: 1100288
%TEMP%\iefwbho.dll
%PROGRAMFILES%\1\Tools\IEFWBHO.dll
%PROGRAMFILES%\BestsellerAntivirus\Tools\IEFWBHO.dll
%PROGRAMFILES%\TrustedAntivirus\Tools\IEFWBHO.dll
MD5: A508AD884614A1262E876DBE0D7B8EA9 Size: 163840
%PROGRAMFILES%\AVSYSTEMCARE\rpt.dll
%PROGRAMFILES%\1\rpt.dll
%PROGRAMFILES%\TrustedAntivirus\rpt.dll
MD5: 0CFFCDE710F2B323F7E4A78ED5937219 Size: 53248
%PROGRAMFILES%\AVSYSTEMCARE\Restart.exe
%PROGRAMFILES%\SpyGuardPro\Restart.exe
%PROGRAMFILES%\AntivirusPCSuite\Restart.exe
MD5: 28FD70A5367C74EAA98E3B2C84A2C8C7 Size: 569344
%PROGRAMFILES%\AllertaMinacce\scnkrnl.dll
%PROGRAMFILES%\1\scnkrnl.dll
%PROGRAMFILES%\VirusAlarma\scnkrnl.dll
%PROGRAMFILES%\SpyGuardPro\scnkrnl.dll
%PROGRAMFILES%\AntivirusPCSuite\scnkrnl.dll
MD5: 077C99DDFC78BAC0F5E0684D9EFD1C1F Size: 40960
%PROGRAMFILES%\AllertaMinacce\Activate.exe
%PROGRAMFILES%\VirusAlarma\Activate.exe
%SystemDiskRoot%\System Volume Information\_restore{36C6A337-65BD-4457-B7CF-F05AD8E2B4B1}\RP115\A0222640.exe
%PROGRAMFILES%\1\Activate.exe
MD5: 5F8733CBC62F1820C0C02296970F5665 Size: 46592
%SYSDIR%\Drivers\FMTR.sys
%PROGRAMFILES%\SpyGuardPro\FMTR.sys
%PROGRAMFILES%\AntivirusPCSuite\FMTR.sys
MD5: AFB42A0B7218569AA2252F539B9E63E4 Size: 154890
%COMMONFILES%\1\ugcw.exe
%COMMONFILES%\WinSpyControl\ugcw.exe
%COMMONFILES%\AVSystemCare\ugcw.exe
MD5: 5B35EC8D59D9805EB4C06C2DF371E86E Size: 14336
%PROGRAMFILES%\WinSecureAv\RTasks.exe
%SystemDiskRoot%\System Volume Information\_restore{0ECD54B3-65D3-4574-AD04-FFF49E9BDB37}\RP79\A0040182.exe
Detecting items list:
- Files by Name
%PROGRAMFILES%\AntiSpywareControl\Activate.exe
%PROGRAMFILES%\AntiSpywareControl\FMTR.sys
%PROGRAMFILES%\AntiSpywareControl\fopnl.dll
%PROGRAMFILES%\AntiSpywareControl\Restart.exe
%PROGRAMFILES%\AntiSpywareControl\rpt.dll
%PROGRAMFILES%\AntiSpywareControl\scnkrnl.dll
%PROGRAMFILES%\AntiSpywareControl\pgs.exe
%PROGRAMFILES%\AntiSpywareControl\RTasks.exe
%PROGRAMFILES%\AntiSpywareControl\Tools\IEFWBHO.dll
%PROGRAMFILES%\AntiSpywareControl\Tools\pg.dll
%PROGRAMFILES%\AntiSpywareControl\Up\gup.exe
%COMMONFILES%\AntiSpywareControl\bm.exe
%COMMONFILES%\AntiSpywareControl\ugac.exe
%COMMONFILES%\AntiSpywareControl\ugcw.exe
%SYSDIR%\drivers\dhlp.sys
%SYSDIR%\drivers\FMTR.sys
- Files by MD5
MD5: 077C99DDFC78BAC0F5E0684D9EFD1C1F Size: 40960
MD5: 5F8733CBC62F1820C0C02296970F5665 Size: 46592
MD5: 683567B2280A672E0CB92E4998EBC1BC Size: 57344
MD5: 0CFFCDE710F2B323F7E4A78ED5937219 Size: 53248
MD5: A508AD884614A1262E876DBE0D7B8EA9 Size: 163840
MD5: 28FD70A5367C74EAA98E3B2C84A2C8C7 Size: 569344
MD5: 4CEFF81A59AEB94424E968E748273777 Size: 2023424
MD5: 5B35EC8D59D9805EB4C06C2DF371E86E Size: 14336
MD5: 72541878B96F7B06A23DA1FEE863D4FE Size: 1100288
MD5: EB2D3F772AB4207295341C2EE5F79ADC Size: 139264
MD5: B352C9979A87569004567750CF5F57C4 Size: 712704
MD5: EBD61126D28DC4DC943A782343524A6D Size: 425984
MD5: 67634215B5534ECF00FB11D08B4E718B Size: 271360
MD5: AFB42A0B7218569AA2252F539B9E63E4 Size: 154890
MD5: 9D51DA08543F1496FD0E6039D49BF9C9 Size: 46592
MD5: 5F8733CBC62F1820C0C02296970F5665 Size: 46592
- Files by Directories
%COMMONFILES%\AntiSpywareControl
%PROGRAMFILES%\AntiSpywareControl
«
Go to Software Database