Home Rogue Websites avcommand.net

avcommand.net

Posted: March 3, 2010

The rogue antivirus program Antivirus Soft uses avcommand.net as a corrupt site to run a cyber scam. Antivirus Soft is installed onto the compromised system through the use of Trojans. During installation, Antivirus Soft configures the browser settings to redirect hapless computer users to avcommand.net. Soon the user will be faced with a fake system scan which produces bogus results claiming the computer is infected with malware. Avcommand.net will then urge the user to purchase a licensed version of Antivirus Soft to remove the alleged threats. Antivirus Soft is a useless program and avcommand.net is corrupt. Have these parasites removed from the system immediately using a reliable malware remover.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %UserProfile%\Local Settings\Application Data\[RANDOM]
    2 %UserProfile%\Local Settings\Application Data\[RANDOM]\[RANDOM]ftav.exe
    3 %UserProfile%\Local Settings\Application Data\[RANDOM]\[RANDOM]sysguard.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\AvScanHKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\[RANDOM]HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\..{RunKeys}HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\[RANDOM]
Loading...