Home Rogue Websites Malware-url.com

Malware-url.com

Posted: November 4, 2009

Malware-url.com is a malicious website created for the rogue anti-spyware program Alpha Antivirus. Most Internet users are redirected to Malware-url.com after being infected by trojans connected to the Alpha AV scam. The website acts as a warning, stating that the website is malicious and that security software must be purchased. Do not fall for this trap and remove this rogue website immediatley.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 AlphaAntivirus.exe
    2 AlphaAV.exe
    3 msnaoladdon.dll
    4 ndisapi.dll
    5 NetFilter.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Alpha AntivirusHKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “Alpha Antivirus”HKEY..\..\..\..{RegistryKeys}%UserProfile%\Desktop\Alpha Antivirus.lnkHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Alpha Antivirus
Loading...