Home Malware Programs Hijackers Antivirko.com


Posted: February 15, 2011

Antivirko.com is a malicious domain built with the intent of fleecing hapless computer users unaware of the website's true nature. Antivirko.com promotes the faulty and dangerous rogue anti-virus product AntiVira Av, has no real security for the transfer of information or funds and is in turn promoted by browser hijacker infections. If you find your browser turning to Antivirko.com by itself, consider yourself infected by serious malware threats and act appropriately. Never visit Antivirko.com deliberately if at all possible.

How Do You Know if Antivirko.com it's a Threat and Not a Friend

Websites such as Antivirko.com make a strong effort of outer friendliness and professionalism to sell their dangerous rogue anti-virus products. A perceptive awareness of the cracks in that presentation can allow you to avoid mirror websites and similar fraudulent domains that may have the same purpose in mind - taking your money and personal information, and giving nothing but malware back in return.

Antivirko.com has limited customer contact information and even more limited true content, with low functionality and little depth. This is because Antivirko.com's token product, AntiVira Av, hasn't actually been around for very long, has a poor reputation, and has zero practical applications as a security tool. A simple search online will show that AntiVira Av is:

  • Spread through malware and other seedy methods, unlike a legitimate product.
  • Will cause false detection of infections, as well as delivering falsified system scan results.
  • May prevent necessary programs, such as Task Manager and popular security software, from running properly.
  • Will alter your settings to make your system more vulnerable to infection, as well as advertising itself.

Has Your Browser Been Hijacked by Antivirko.com?

The final symptom noted about AntiVira Av is caused by many kinds of malware and is particularly dangerous because it will often turn your browser towards Antivirko.com or another malicious website. Commonly, this is done through proxy servers settings, which will redirect you towards Antivirko.com almost constantly.

Antivirko.com hijackers may even use embedded links and fake website danger alerts to try to convince you that you should head to Antivirko.com for your own good! These should be identified as being illegitimate, since the error messages used by reliable sources will never link you to an external website you've never visited before.

Naturally, you should disregard all links and advice. Consider any presence of Antivirko.com-related malware on your system a dangerous infection, and use true security software to get rid of Antivirko.com.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Temp%\\.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\PhishingFilter "Enabled" = '0'HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyEnable" =HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyOverride" = ''HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyServer" = 'http='