Home Rogue Websites Antisywaresuite.com

Antisywaresuite.com

Posted: May 10, 2010

Antisywaresuite.com (Antisywaresuite.net) is a rogue website that promotes underhanded malware propagation activity for Antispyware Soft. Antisywaresuite.com acts like a scan page but produces false results claiming the computer is infected. Do not click on anything related to Antisywaresuite.com, instead remove Antisywaresuite.com from your browser and use a updated anti-spyware program to terminate Antispyware Soft and related malware.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Documents and Settings%\[UserName]\Local Settings\Application Data\[random string]\[random string].exe
    2 %Documents and Settings%\[UserName]\Local Settings\Application Data\[random string]\[random string]tssd.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\AvScanHKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "[random string]"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "[random string]"
Loading...