Home Malware Programs Rogue Anti-Spyware Programs Antivirus System 2009

Antivirus System 2009

Posted: May 11, 2009

Antivirus System 2009 is a rogue anti-spyware application known to be a clone of Antivir System PRO or Antivirus System PRO. Both Antivirus System 2009 and Antivir System PRO, are very dangerous programs that use illicit techniques to force computer users to purchase a full version of the illegitimate software.

Antivirus System 2009 is known to be installed automatically, without your permission, through a Trojan infection such as Zlob. Usually a Trojan like Zlob is obtained through a malicious source such as an adult website or an illegal software sharing network. Once a Trojan that installs Antivirus System 2009 is on your system, you may start to get several popup messages or fake notifications warning of a computer infection. In addition to fake popup messages, Antivirus System 2009, once installed, is known to perform system scans that return the results of several parasites found on your system. These results are bogus and should not be trusted. Removal of Antivirus System 2009 is recommended to be performed with a spyware scan application to limit damage to system files during removal.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %ProgramFiles%\Antivir System PRO\antivirsystempro.exe
    2 %ProgramFiles%\Antivir System PRO\conf.cfg
    3 %ProgramFiles%\Antivir System PRO\mbase.vdb
    4 %ProgramFiles%\Antivir System PRO\quarantine.vdb
    5 %ProgramFiles%\Antivir System PRO\queue.vdb
    6 %ProgramFiles%\Antivir System PRO\uninstall.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_LOCAL_MACHINE\SOFTWARE\Antivir System PROHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "Antivir System PRO"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad "ieModule"HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Antivir System PRO
Loading...