Home Malware Programs Rogue Anti-Spyware Programs Antivirus 2009 Pro

Antivirus 2009 Pro

Posted: December 30, 2008

Antivirus 2009 Pro, also known as Antivirus Pro 2009, is a malicious rogue anti-spyware program. Antivirus 2009 Pro is also a clone of Antivirus 2009. Antivirus 2009 Pro is promoted and advertised through Trojans and displays phony security warning alerts claiming that your PC is infected. The purpose of these false alerts is to trick or scare you into purchasing the useless Antivirus 2009 Pro program. Don't be a victim of this shakedown scheme and do NOT purchase the scam Antivirus 2009 Pro program.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %desktopdirectory%\antivirus 2009.lnk
    2 %desktopdirectory%\antiviruspro2009.lnk
    3 %profile%\application data\microsoft\internet explorer\quick launch\antiviruspro2009.lnk
    4 %program_files%\antivirus 2009\av2009.exe
    5 %program_files%\antiviruspro2009\antiviruspro2009.cfg
    6 %program_files%\antiviruspro2009\antiviruspro2009.exe
    7 %program_files%\antiviruspro2009\avengn.dll
    8 %program_files%\antiviruspro2009\data\daily.cvd
    9 %program_files%\antiviruspro2009\htmlayout.dll
    10 %program_files%\antiviruspro2009\microsoft.vc80.crt\microsoft.vc80.crt.manifest
    11 %program_files%\antiviruspro2009\microsoft.vc80.crt\msvcm80.dll
    12 %program_files%\antiviruspro2009\microsoft.vc80.crt\msvcp80.dll
    13 %program_files%\antiviruspro2009\microsoft.vc80.crt\msvcr80.dll
    14 %program_files%\antiviruspro2009\pthreadvc2.dll
    15 %program_files%\antiviruspro2009\uninstall.exe
    16 %program_files%\antiviruspro2009\wscui.cpl
    17 %programs%\antiviruspro2009\antiviruspro2009.lnk
    18 %programs%\antiviruspro2009\uninstall.lnk
    19 %startmenu%\antivirus 2009\antivirus 2009.lnk
    20 %startmenu%\antivirus 2009\uninstall antivirus 2009.lnk
    21 %system%\scui.cpl
    22 %userprofile%\application data\microsoft\internet explorer\quick launch\antivirus 2009.lnk
    23 %userprofile%\desktop\antivirus 2009.lnk
    24 %userprofile%\start menu\antivirus 2009\antivirus 2009.lnk
    25 %userprofile%\start menu\antivirus 2009\uninstall antivirus 2009.lnk

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\"Antivirus" = "%ProgramFiles%\Antivirus 2009\Antvrs.exe"

Related Posts

Loading...