Home Malware Programs Rogue Anti-Spyware Programs VaccineTree

VaccineTree

Posted: August 17, 2010

VaccineTree is a rogue computer security application related to the fake security applications EzPrivacy and GreenVaccine. VaccineTree may be installed without notice to a computer user causing the system to display bogus alert notifications. In addition to the popups that VaccineTree generates, it will scan the system for parasites only to return several falsified results. These scan results and popup alerts are all used as a scare tactic to make a computer user believe they must purchase a full version of VaccineTree to remove the threats. Not only does Vaccine Tree not have the ability to remove these parasites, but the results are fabricated and pose no apparent danger. However, VaccineTree is a dangers application to have installed on your computer. It is recommended that a spyware removal tool be used to delete VaccineTree completely from the computer.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\1.bmp
    2 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\2.bmp
    3 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\3.bmp
    4 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\4.bmp
    5 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\5.bmp
    6 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\about_blank.bmp
    7 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\all_select.bmp
    8 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\all_select2.bmp
    9 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\bg.bmp
    10 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_account.bmp
    11 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_autoupdate.bmp
    12 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_cure.bmp
    13 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_exit.bmp
    14 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_logout.bmp
    15 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_qurantine.bmp
    16 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_realtime.bmp
    17 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_realtime_start.bmp
    18 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_realtime_stop.bmp
    19 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_scan.bmp
    20 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_scanlog.bmp
    21 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_service.bmp
    22 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_skin.bmp
    23 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_updateinfo.bmp
    24 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\btn_x.bmp
    25 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\close.bmp
    26 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\common_close.bmp
    27 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\common_dlg_backpattern.bmp
    28 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\common_exit.bmp
    29 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\del.bmp
    30 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\engine_ver.bmp
    31 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\help.bmp
    32 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\home.bmp
    33 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\in_scan_title.bmp
    34 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\last_scan_date.bmp
    35 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\license_date.bmp
    36 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\ColumnHeaderEnd.bmp
    37 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\ColumnHeaderSpan.bmp
    38 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\ColumnHeaderStart.bmp
    39 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\height_blank.bmp
    40 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\HorizontalScrollBarLeftArrow.bmp
    41 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\HorizontalScrollBarRightArrow.bmp
    42 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\HorizontalScrollBarSpan.bmp
    43 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\HorizontalScrollBarThumb.bmp
    44 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\left_pattern.bmp
    45 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\pattern.bmp
    46 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\right_pattern.bmp
    47 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\Thumbs.db
    48 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\VerticleScrollbarBottom.bmp
    49 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\VerticleScrollBarDownArrow.bmp
    50 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\VerticleScrollBarSpan.bmp
    51 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\VerticleScrollBarThumb.bmp
    52 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\VerticleScrollbarTop.bmp
    53 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\list_control\VerticleScrollBarUpArrow.bmp
    54 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\loading.bmp
    55 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\logo.bmp
    56 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\main_btn_scan.bmp
    57 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\main_btn_startpage.bmp
    58 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\main_chk_general_scan2.bmp
    59 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\main_chk_power_scan2.bmp
    60 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\main_chk_vs_scan2.bmp
    61 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\mark.bmp
    62 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\maxmize.bmp
    63 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\minmize.bmp
    64 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\msg_no.bmp
    65 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\msg_yes.bmp
    66 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\normal.bmp
    67 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\pop_end_bg.bmp
    68 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\pop_end_cancel.bmp
    69 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\pop_end_yes.bmp
    70 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\pop_result1_bg.bmp
    71 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\pop_result1_cancel.bmp
    72 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\pop_result1_title.gif
    73 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\pop_result2_bg.bmp
    74 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\pop_result2_title.gif
    75 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\pop_resutl1_ok.bmp
    76 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\Pop_Tray_bg.bmp
    77 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\Pop_Tray_bg2.bmp
    78 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\qurantine_title.bmp
    79 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\realtime_start.bmp
    80 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\realtime_stop.bmp
    81 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\realtime_title.bmp
    82 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\release_all.bmp
    83 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\release_all2.bmp
    84 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\report.bmp
    85 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\restore.bmp
    86 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scaing_repair.bmp
    87 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scaing_repair_can.bmp
    88 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scan_db_update_info.bmp
    89 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scan_engine_update_info.bmp
    90 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scan_info.bmp
    91 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scan_list_bg.bmp
    92 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scan_start.bmp
    93 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scan_start2.bmp
    94 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scan_title.bmp
    95 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scan_update_info.bmp
    96 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scaning_cancel.bmp
    97 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scaning_counting.bmp
    98 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scaning_objects_count.bmp
    99 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scaning_pattern_count.bmp
    100 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scaning_progresbar.bmp
    101 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scaning_scan.bmp
    102 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scaning_target.bmp
    103 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\scanlog_title.bmp
    104 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\service_internet_temp_title.bmp
    105 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\service_title.bmp
    106 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\service_win_searchlist_title.bmp
    107 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\service_win_temp_title.bmp
    108 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\setup.bmp
    109 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\skin.xml
    110 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\Thumbs.db
    111 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\tray_btn_close.bmp
    112 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\tray_btn_cure.bmp
    113 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\tray_btn_x.bmp
    114 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\tray_copy.gif
    115 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\updateinfo_title.bmp
    116 C:\Documents and Settings\{username}\Local Settings\Temp\VaccineTree\view.bmp
    117 C:\Program Files\Vaccinetree\conf.ini
    118 C:\Program Files\Vaccinetree\db\addb.dat
    119 C:\Program Files\Vaccinetree\db\adsub.dat
    120 C:\Program Files\Vaccinetree\db\adtc.dat
    121 C:\Program Files\Vaccinetree\db\avmon.dat
    122 C:\Program Files\Vaccinetree\db\pwdb.dat
    123 C:\Program Files\Vaccinetree\db\vsdb.dat
    124 C:\Program Files\Vaccinetree\etc\avsrv.exe
    125 C:\Program Files\Vaccinetree\etc\avsrvc.exe
    126 C:\Program Files\Vaccinetree\etc\avSubEngine.exe
    127 C:\Program Files\Vaccinetree\etc\VTFilterDriver.SYS
    128 C:\Program Files\Vaccinetree\etc\vtMon.exe
    129 C:\Program Files\Vaccinetree\etc\vtReg.exe
    130 C:\Program Files\Vaccinetree\etc\VTreport.exe
    131 C:\Program Files\Vaccinetree\Lang\kr.xml
    132 C:\Program Files\Vaccinetree\Log\Report.txt
    133 C:\Program Files\Vaccinetree\partner.ini
    134 C:\Program Files\Vaccinetree\skin\default.avs
    135 C:\Program Files\Vaccinetree\SoVTUpdateServer.dat
    136 C:\Program Files\Vaccinetree\Uninstall.exe
    137 C:\Program Files\Vaccinetree\VaccineTree.exe
    138 C:\Program Files\Vaccinetree\VTAutoUpdate.exe
    139 C:\Program Files\Vaccinetree\VTUpdateServer.dat

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_LOCAL_MACHINE\SOFTWARE\VaccinetreeHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\vaccinetreemainHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}VaccineTreeMain
Loading...