Home Malware Programs Rogue Anti-Spyware Programs AntiSpyStorm 2008

AntiSpyStorm 2008

Posted: August 5, 2008

AntiSpyStorm 2008, also known as AntiSpyStorm2008 or AntiSpyStorm, is a rogue anti-spyware program. You may have downloaded AntiSpyStorm 2008 thinking it would solve your spyware issues, or it may have infected your computer with the help of Trojan Zlob or Vundo. Anyways, once you're infected with AntiSpyStorm 2008, it will use aggressive advertising methods to push it's rogue website (AntiSpyStorm2008.com) and sell its product, claiming to be able to clean your computer from spyware. AntiSpyStorm 2008's deceptive methods include: rogue popups, system notification messages and scan reports.

AntiSpyStorm 2008 will try to convince you that you're infected with a load of spyware, when, in reality, is AntiSpyStorm 2008 the cause of the spyware. AntiSpyStorm 2008 is able to emulate a system scan and report a list of supposed infections to scare you and to push you into buying the full AntiSpyStorm 2008 version. AntiSpyStorm 2008 may launch on every Windows startup.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %UserProfile%\Desktop\vbzlib1.dll
    2 c:\Documents and Settings\All Users\Desktop\AntispyStorm.lnk
    3 c:\Documents and Settings\All Users\Start Menu\Programs\AntispyStorm
    4 c:\Documents and Settings\All Users\Start Menu\Programs\AntispyStorm\AntispyStorm.lnk
    5 c:\Documents and Settings\All Users\Start Menu\Programs\AntispyStorm\Uninstall AntispyStorm.lnk
    6 c:\Program Files\AntispyStorm
    7 c:\Program Files\AntispyStorm\AntispyStorm.exe
    8 c:\Program Files\AntispyStorm\AntispyStorm.exe.MANIFEST
    9 c:\Program Files\AntispyStorm\as_ie_monitor.dll
    10 c:\Program Files\AntispyStorm\config.dat
    11 c:\Program Files\AntispyStorm\filesbase.bin
    12 c:\Program Files\AntispyStorm\global_virus_table.bin
    13 c:\Program Files\AntispyStorm\ignoredomainsbase.bin
    14 c:\Program Files\AntispyStorm\ignorefilesbase.bin
    15 c:\Program Files\AntispyStorm\ignoreregsbase.bin
    16 c:\Program Files\AntispyStorm\mdReg.dll
    17 c:\Program Files\AntispyStorm\parser.exe
    18 c:\Program Files\AntispyStorm\regbase.bin
    19 c:\Program Files\AntispyStorm\stat.bin
    20 c:\Program Files\AntispyStorm\uninstall.exe
    21 c:\Program Files\AntispyStorm\uninstall.log
    22 c:\Program Files\AntispyStorm\urlbase.bin

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_LOCAL_MACHINE\SOFTWARE\AntiSpywareHKEY_LOCAL_MACHINE\SOFTWARE\AntispyStormHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{89AD69EF-A3CD-4A2F-9D65-7D04247B72E3}HKEY..\..\..\..{RegistryKeys}HKEY_CLASSES_ROOT\CLSID\{89AD69EF-A3CD-4A2F-9D65-7D04247B72E3}HKEY_CLASSES_ROOT\as_ie_monitor.ie_monitorHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "AntispyStorm"HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}AntispyStorm
Loading...