Home Malware Programs Worms HPsus/FakeAV-J

HPsus/FakeAV-J

Posted: February 6, 2012

Threat Metric

Threat Level: 2/10
Infected PCs: 16
First Seen: February 6, 2012
OS(es) Affected: Windows

HPsus/FakeAV-J is a malicious Trojan which spreads through malicious websites and attacks Windows computers. HPsus/FakeAV-J can download and install rogue anti-spyware applications such as Security Shield. HPsus/FakeAV-J changes system configurations so that attackers could gain remote access to the affected PC user's files. HPsus/FakeAV-J may also change the Windows directory and download other malicious files. HPsus/FakeAV-J modifies the registry so that it can run automatically every time your start your PC. HPsus/FakeAV-J has the ability to monitor its victim's activities to obtain valuable login details. Trojan.FakeAV!gen32 is a dangerous threat that should be eliminated as early as possible.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Documents and Settings\<username>\Start Menu\Programs\Security Shield.lnk File name: C:\Documents and Settings\<username>\Start Menu\Programs\Security Shield.lnk
File type: Shortcut
Mime Type: unknown/lnk
Group: Malware file
Loading...