Home Malware Programs Rogue Anti-Virus Programs Antivirus v8

Antivirus v8

Posted: November 12, 2010

Antivirus v8 pretends to be a legitimate program but is actually a rogue malware remover. Antivirus v8 infiltrates the computer by using Trojans which imitate system updates and produce a bogus security notification claiming the computer is infected. Antivirus v8 basically imitates the actions of security tool, yet it cannot detect or remove any malware from the targeted system. Remove Antivirus v8 immediately.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Documents and Settings%\[UserName]\Desktop\Antivirusv8.lnk
    2 %Documents and Settings%\All Users\Start Menu\AV\Antivirusv8.lnk
    3 %Documents and Settings%\All Users\Start Menu\AV\Uninstall.lnk
    4 %Program Files%\AV\Antivirusv8.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command][HKEY_CURRENT_USER\Software\Classes\secfile\shell\open\command]HKEY..\..\..\..{RegistryKeys}"Content Type"="application/x-msdownload"@="exefile"[HKEY_CLASSES_ROOT\.exe\shell\open\command][HKEY_CLASSES_ROOT\.exe][HKEY_CLASSES_ROOT\secfile]

Related Posts

Loading...