Home Malware Programs Trojans W32/AntiVirusPro.FS

W32/AntiVirusPro.FS

Posted: March 2, 2009

W32/AntiVirusPro.FS, also known as Trojan-Downloader.Win32.Murlo.abj, Troj/FakeAV-KS, and TR/Dldr.FakeAler.IM, is a Trojan that infects Windows systems. The
W32/AntiVirusPro.FS Trojan can be downloaded from dubious websites without one's knowledge. The danger with W32/AntiVirusPro.FS is its malicious ability and functions that compromise the security of your PC. This leaves you at risk to unauthorized access to your system by hackers who can then steal your sensitive personal information and result in identity theft and financial loss.

If you think that your PC is infected with W32/AntiVirusPro.FS, notify your bank and credit card companies right away. Your accounts may need to be closed. Remove the infection as soon as possible.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Program Files\AdwarePro
    2 %Program Files\AdwarePro\AdwarePro.exe
    3 %Program Files\AdwarePro\SSEngine.dll
    4 %Program Files\AdwarePro\StartApp.exe
    5 %Program Files\AdwarePro\uninst.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\AdwareProHKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System DisableTaskMgr = 0x00000001 (Change Value to 1)HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run Delete run=AdwarePro.exe - bootHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run Delete run=AdwarePro.exeHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}AdwarePro_is1
Loading...