Antivirus Solution
|
Description:
|
Rogue Security Program
|
|
Risk Level:
|
Low
|
|
Date of First Occurence:
|
Monday, April 21, 2008
|
|
Software Developer:
|
(unknown)
|
|
Brief Info:
|
Rogue/Suspect Anti-Spyware Product
"Rogue/Suspect" means that these products are of unknown, questionable, or dubious value as anti-spyware protection.
|
|
Removal:
|
This threat can be removed using "Spyware
Terminator"
|
SCAN & REMOVE NOW »
Geographical Distribution of Threat "Antivirus Solution"
Threat Info
View All
Detected Items
- Detected Files:
%SYSDIR%\filekiller.dll
MD5: 327635D109CEB827D5CEB392B6144BC2 Size:60416
MD5: 8E2FE4B21CD6DCFA315893883930B293 Size:49152
MD5: 0A830E3BBC54087D5E5C2A2B93E26F61 Size:57344
MD5: 559AD92EC4794E3363A658E3ECDA2A75 Size:57344
MD5: 8E817ADD11D19D6E9D33930D4E311650 Size:49152
MD5: 30E8E911742D5D4002B8342C7483B606 Size:57344
MD5: 11C1C86D3D04F10399C21003F66A75E9 Size:57344
MD5: EF0AEA06B690037715C4F449A36B917E Size:57344
MD5: 92C79F1F8AE7FF7B878C392557909EA6 Size:49152
MD5: 96924F981C907BF57956C238855AE72E Size:49152
MD5: AC3CA2C341C0804C6C2B6170B1EC08CD Size:49152
MD5: 5D0C4AA498123C797ABCE1657F3396F3 Size:49152
and more....
%SYSDIR%\filekiller.dll
MD5: 5867CEBAF638F160F3168BEF8DD4E10D Size:49152
MD5: 782E33152F6A4CB9A904077033F074C5 Size:57344
MD5: 30E8E911742D5D4002B8342C7483B606
- Detected Files with variable Filenames:
Detecting items list:
- Files by Name
%PROGRAMFILES%\Antivirus Solution\antivirussolution.exe
%PROGRAMFILES%\Antivirus Solution\uninst.exe
%PROGRAMFILES%\Antivirus Solution\ClamWin\bin\test\clamscan.exe
%PROGRAMFILES%\Antivirus Solution\ClamWin\bin\test\cygbz2-1.dll
%PROGRAMFILES%\Antivirus Solution\ClamWin\bin\test\cyggmp-3.dll
%PROGRAMFILES%\Antivirus Solution\ClamWin\bin\test\cygminires.dll
%PROGRAMFILES%\Antivirus Solution\ClamWin\bin\test\cygwin1.dll
%PROGRAMFILES%\Antivirus Solution\ClamWin\bin\test\cygz.dll
%PROGRAMFILES%\Antivirus Solution\ClamWin\bin\test\python23.dll
%PROGRAMFILES%\Antivirus Solution\SpyWares\spydb.exe
%PROGRAMFILES%\Antivirus Solution\SpyWares\Browser Hijack\helper.dll
%START_PROGRAMS%\Antivirus Solution\Antivirus Solution.lnk
%START_PROGRAMS%\Antivirus Solution\Uninstall.lnk
%START_PROGRAMS%\Antivirus Solution\Website.lnk
%SYSDIR%\filekiller.dll
%DESKTOP%\Antivirus Solution.lnk
- Files by Directories
%PROGRAMFILES%\Antivirus Solution %START_PROGRAMS%\Antivirus Solution
- Registry Keys
HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Antivirus Solution
HKLM\SOFTWARE\6D Solutions International Inc.
HKLM\SOFTWARE\6D Solutions International Inc.\Antivirus Solution
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\AntivirusSolution.exe
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Antivirus Solution
- Registry Values
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ValueName=AntivirusSolution
«
Go to Software Database