Home Malware Programs Browser Hijackers Secure-order-box.com

Secure-order-box.com

Posted: September 8, 2008

Secure-order-box.com is a malicious website known to sell rogue anti-spyware program Total Secure 2009. Once infected by Total Secure 2009, you'll be receiving fake popups and system notifications of imaginary spyware threats. Total Secure 2009 may also try to trick you with its fake system scanner and erroneous scan results.

All links provided by Total Secure 2009 will most likely redirect you to Secure-order-box.com to further purchase Total Secure 2009's licensed program. Secure-order-box.com sells Total Secure 2009 as a legitimate spyware remover program for $25.99.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %UserProfile%\Desktop\Total Secure 2009.lnk
    2 %UserProfile%\Start Menu\Programs\Total Secure 2009.lnk
    3 c:\Program Files\TotalSecure2009\scan.exe
    4 c:\Program Files\TotalSecure2009\totalsecure.s1
    5 c:\Program Files\TotalSecure2009\totalsecure.s2
    6 c:\Program Files\TotalSecure2009\totalsecure.s3
    7 c:\Program Files\TotalSecure2009\totalsecure.s4
    8 c:\Program Files\TotalSecure2009\totalsecure.s5
    9 c:\Program Files\TotalSecure2009\totalsecure.s6
    10 c:\Program Files\TotalSecure2009\uninstall.exe
    11 TotalSecure2009[1].exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\TotalSecure2009HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Total Secure 2009
  • The following CLSID's were detected:
    HKEY..\..\{CLSID Path}D79DA7F1-9B93-45CC-9019-26BD0A086577
Loading...