Home Rogue Websites Antivirusstudio.com

Antivirusstudio.com

Posted: October 4, 2010

Antivirusstudio.com is a rogue website that redirects to a fake scan page promoting Antivirus Studio 2010. Antivirusstudio.com monitors browser activities and displays bogus pop-up advertisements. Antivirusstudio.com may also come bundled with other malware. Antivirusstudio.com will run on every Windows startup and should be removed from the browser. Use an updated spyware remover to make sure your PC is threat free.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %AppData%\AntiVirus Studio 2010\AntiVirus Studio 2010.exe
    2 %AppData%\AntiVirus Studio 2010\securitycenter.exe
    3 %AppData%\AntiVirus Studio 2010\securityhelper.exe
    4 %AppData%\AntiVirus Studio 2010\taskmgr.dll
    5 %Programs%\AntiVirus Studio 2010.lnk
    6 %Programs%\AntiVirus Studio 2010\Activate AntiVirus Studio 2010.lnk
    7 %Programs%\AntiVirus Studio 2010\AntiVirus Studio 2010.lnk
    8 %Programs%\AntiVirus Studio 2010\Help AntiVirus Studio 2010.lnk
    9 %Programs%\AntiVirus Studio 2010\How to Activate AntiVirus Studio 2010.lnk
    10 %Temp%\17dkf.exe
    11 %Temp%\472a10e2ebxd9.exe
    12 %Temp%\_2.tmp
    13 %Temp%\backd-efq.exe
    14 %Temp%\dc_3.exe
    15 %Temp%\dd10?10.exe
    16 %Temp%\ds7hw.exe
    17 %Temp%\eelnvd13.exe
    18 %Temp%\gedx_ae09.exe
    19 %Temp%\hodeme.exe
    20 %Temp%\jdhellwo3.exe
    21 %Temp%\lols.exe
    22 %Temp%\ppddfcfux.exe
    23 %Temp%\qwedvor.exe
    24 %Temp%\sycre.exe
    25 %Temp%\wrcud12.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\AntiVirus Studio 2010HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User AgentHKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post PlatformHKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run ""%AppData%\AntiVirus Studio 2010\AntiVirus Studio 2010.exe" /STARTUP"HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "%AppData%\AntiVirus Studio 2010\securitycenter.exe"HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "%AppData%\antivirus studio 2010\securityhelper.exe"HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\UninstallHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}AntiVirus Studio 2010
Loading...