Home Malware Programs Rogue Anti-Spyware Programs Total Secure 2009

Total Secure 2009

Posted: August 30, 2008

Threat Metric

Threat Level: 10/10
Infected PCs: 54
First Seen: July 24, 2009
Last Seen: June 11, 2024
OS(es) Affected: Windows

ScreenshotTotalSecure2009 also known as Total Secure 2009 is a rogue anti-spyware program due to its deceptive and aggressive advertising practices also used by other members of its family such as Live Security Platinum. Total Secure 2009 and its marketing affiliates are distributing and installing TotalSecure2009's anti-spyware program through a download which is bundled with a trojan triggered by a browser helper object (BHO). Many of these trojan bundled downloads are located in sites which offer a "video codec" to be able to view free adult entertainment videos.

ScreenshotScreenshotScreenshot

Aliases

TROJ_RENOS.AJW [TrendMicro]Trojan-Downloader.Drv32 [Sunbelt]Troj/Zlob-AQP [Sophos]Adware/IEAntivirus [Panda]Win32/Adware.IeDefender.NHO [NOD32]Trojan.BHO.Gen [McAfee-GW-Edition]W32/BHO.HOF!tr [Fortinet]Trojan.Win32.BHO.hof [F-Secure]Adware.Bho.87 [DrWeb]TrojWare.Win32.Trojan.BHO.hof [Comodo]Trojan.BHO-4312 [ClamAV]TrojanDownloader.Renos.gen [CAT-QuickHeal]Trojan.Generic.838259 [BitDefender]W32/Trojan2.ENIT [Authentium]TR/BHO.Gen [AntiVir]
More aliases (217)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



cfen32x.dll File name: cfen32x.dll
Size: 24.06 KB (24064 bytes)
MD5: 12f56ada6aca1ebd5b164c48e7f5a343
Detection count: 82
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
gpatbs.dll File name: gpatbs.dll
Size: 61.44 KB (61440 bytes)
MD5: 9cea4c854ed29e77b847cf691f4554bd
Detection count: 75
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
cfax32x.dll File name: cfax32x.dll
Size: 23.55 KB (23552 bytes)
MD5: 3125c2c5b7805fe4c5146392acef7681
Detection count: 72
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
xappit.dll File name: xappit.dll
Size: 53.24 KB (53248 bytes)
MD5: 0948e63ffb252e89b85d490b78d2ec8f
Detection count: 70
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
TotalSecure2009[1].exe File name: TotalSecure2009[1].exe
Size: 3.81 MB (3816052 bytes)
MD5: 7b2143275ef45332fc85219a590d2646
Detection count: 70
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
SYSBAS~1.DLL File name: SYSBAS~1.DLL
Size: 65.53 KB (65536 bytes)
MD5: 2f1ee926382676140f2988e200cd94e2
Detection count: 53
File type: Dynamic link library
Mime Type: unknown/DLL
Group: Malware file
Last Updated: December 11, 2009
mipinu.dll File name: mipinu.dll
Size: 61.44 KB (61440 bytes)
MD5: 9c62f3906f449240cd21bc39d373e018
Detection count: 45
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
rgf.dll File name: rgf.dll
Size: 69.63 KB (69632 bytes)
MD5: adf77ce5a84d5bf12788f41a4b76a77a
Detection count: 41
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
sysbase32.dll File name: sysbase32.dll
Size: 57.34 KB (57344 bytes)
MD5: 05962826a969869f1ddfe19e04c8b53d
Detection count: 40
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
dzhoil.dll File name: dzhoil.dll
Size: 73.72 KB (73728 bytes)
MD5: 13bdf89c76c03503ee137b06b3199ffd
Detection count: 30
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
scan.exe File name: scan.exe
Size: 2.24 MB (2241024 bytes)
MD5: be28ae28755e7be7a138564c89e31d1b
Detection count: 21
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
ifsndu.dll File name: ifsndu.dll
Size: 73.72 KB (73728 bytes)
MD5: f521eb81607412c970b7fda5d853c0bc
Detection count: 15
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
C:\rogueware samples\folder\pikavn.dll File name: pikavn.dll
Size: 110.59 KB (110592 bytes)
MD5: 3ee3b480d4c8f36f6de37a785ff9d6cc
Detection count: 7
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\rogueware samples\folder\pikavn.dll
Group: Malware file
Last Updated: May 6, 2024
hare32.dll File name: hare32.dll
Size: 57.34 KB (57344 bytes)
MD5: 994ab644f953249bb4028fb3f76031e2
Detection count: 0
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009

More files

Registry Modifications

The following newly produced Registry Values are:

Run keysTotalSecure2009

Additional Information

The following directories were created:
%ProgramFiles%\TS-2009%ProgramFiles%\TS2009
The following cookies were detected:
total-secure2009

2 Comments

  • Carolyn Jackson says:

    I have a Trojan virus on my computer at home. I can not download Total Secure 2009 because my keyboard is lock, so I could not enter my e-mail address. In addition, I did not have a License Number. Please adevise. Carolyn Jackson.

  • kroberts says:

    This forum was extremely helpful. Examples showing exactly how to browse around and search, find, and delete all forms and different types of the problem are very effective compared to "trying to explain" this process. The links to better explain the examples were just an added bonus. I appreciate the the usefulness of this thread and the time that was taken to create it.

Loading...