AntiVirus2008
| AntiVirus2008 |
Destructivity: |
| • Detected by virus detection files published: 8/15/2008 | • Type: Trojan |
| • Virus characteristics first published: 8/15/2008 | • Spreading mechanism: Email, Webpage |
| • Virus characteristics latest update: 8/15/2008 | • Overall risk: Medium |
| • Alias: FakeAlert | • Payload: Downloads and installs malware |
| Virus type |
Spreading mechanism |
Destructivity and payload |
Additional descriptions |
Detection and removal |
||||||||||
Changes to registry"antivirus-2008pro.exe" in %randomname%.exe, e.g. "%root%\Program Files\rhc3u0j0ev77.exe" in Ultimate Cleaner:"UltimateCleaner.exe" in Other changes:"%root%\Program Files\Messenger\msmsgs.exe" /background %randomname%.exe, e.g. "%root%\Program Files\rhc3u0j0ev77.exe" in HKEY_CURRENT_USER\Software\Antivirus 2008 PRO HKEY_CURRENT_USER\Software\Ultimate Cleaner Value "HH:mm: VIRUS ALERT!" in "sTimeFormat" in subkey Value "VIRUS ALERT!" in "ProductId" in Value "HH:mm: VIRUS ALERT!" in "sTimeFormat" in Value "ultimatecleaner.exe" in "000" in Value "C:\Program Files\Ultimate Cleaner\UltimateCleaner.exe" hide in "Ultimate Cleaner" in Value "AntivirXP08" in "AntivirXP08" in Value "AntivirXP08" in "DisplayName" in subkey Value "C:\Program Files\rhc3u0j0ev77\uninstall.exe" in "UninstallString" in subkey Value "Ultimate Cleaner" in "DisplayName" in subkey Values HKEY_LOCAL_MACHINE\SOFTWARE\Ultimate Cleaner Value "C:\Program Files\Ultimate Cleaner\com\ucsecuredelete.dll" in Value "http://trefotte.com:80" in |
||||||||||||||