Home Malware Programs Rogue Anti-Spyware Programs Top Antivirus

Top Antivirus

Posted: April 23, 2009

Top Antivirus, also known as TopAntivirus, is a rogue anti-spyware program known to usually infect computers through Trojans bundled in fake video codec downloads. You may also have downloaded Top Antivirus's trial version from a malicious website thinking it would get rid of your spyware issues.

Once TopAntivirus is installed, it will issue fake popups and system notification messages stating that your computer system is flooded with spyware. In order to remove these imaginary threats, Top Antivirus will offer its "licensed" version. All links provided by Top Antivirus will most likely redirect you to Top Antivirus's website or other corrupt websites that distribute Top Antivirus as a legitimate software. Moreover, Top Antivirus is able to emulate a computer system scan and display a list of spyware infections as a result. In addition, Top Antivirus may download additional malware and may launch on every Windows startup.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Program_Files%\Common Files\System\msan\mcdlk.exe
    2 %Program_Files%\Common Files\System\msan\wsgd.exe
    3 angd.exe
    4 rkgdll.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "asus32"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PDefenderHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "Perfect Defender 2009"HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Perfect Defender 2009

Related Posts

Loading...