Home Malware Programs Rogue Anti-Spyware Programs WinAntiVirus Pro 2006

WinAntiVirus Pro 2006

Posted: April 28, 2011

Threat Metric

Threat Level: 10/10
Infected PCs: 173
First Seen: July 24, 2009
Last Seen: October 3, 2022
OS(es) Affected: Windows

WinAntiVirus 2006 is a rogue security application, related to WinFixer. This program will report nonexistent threats to you in an attempt to get you to purchase the full version of the program. WinAntiVirus 2006 may be installed through drive-by downloads and other unscrupulous delivery methods. This program may monitor your websurfing habits through a BHO extension.

Aliases

WinFixer [Symantec]WinSoftware Corporation, Inc. (v) [Sunbelt]Rogue.ErrorSafe [Prevx1]Application/WinAntiVirus2007 [Panda]Program:Win32/Winfixer [Microsoft]potentially unwanted program Winfixer [McAfee]Misc/WinFixer [Fortinet]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



WinAV.exe File name: WinAV.exe
Size: 5.36 MB (5361664 bytes)
MD5: d24d86e14b0be72e78988b6798128cf8
Detection count: 91
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WinAvXX.exe File name: WinAvXX.exe
Size: 7.68 KB (7680 bytes)
MD5: 2d9b4ebf8461c2f5066dfe387e435371
Detection count: 75
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
IEFWBHO.dll File name: IEFWBHO.dll
Size: 84.17 KB (84176 bytes)
MD5: a1ead94fb8300fb5adb0c585b82d3014
Detection count: 73
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
IEFWBHO.dll File name: IEFWBHO.dll
Size: 119.29 KB (119296 bytes)
MD5: 3cdc879e090bdd3404455c6f9256ae8a
Detection count: 55
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
fat.exe File name: fat.exe
Size: 53.24 KB (53248 bytes)
MD5: c3d61a09db02da1c328778366411eeff
Detection count: 51
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
winpgi.dll File name: winpgi.dll
Size: 145.1 KB (145104 bytes)
MD5: 7913e6b3b77482a250088730d007e1ee
Detection count: 45
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
ers_startupmon.exe File name: ers_startupmon.exe
Size: 163.84 KB (163840 bytes)
MD5: deba7ccf66e0680e22eec1480f6c7282
Detection count: 45
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WinAV.exe File name: WinAV.exe
Size: 5.26 MB (5263360 bytes)
MD5: b5527004ef507f0aec0c74922dd81fd5
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WinAV.exe File name: WinAV.exe
Size: 1.9 MB (1908736 bytes)
MD5: ab85da6215e7d3e634d94c4aeb4bbb79
Detection count: 41
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
VAExt.exe File name: VAExt.exe
Size: 86.01 KB (86016 bytes)
MD5: f3597bd581a336ff9970555ac216d081
Detection count: 41
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: October 6, 2020
WinAV.exe File name: WinAV.exe
Size: 5.26 MB (5263360 bytes)
MD5: cf2430c8c8937f97824f74abb1b6039e
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
CompWiz.exe File name: CompWiz.exe
Size: 630.78 KB (630784 bytes)
MD5: 3aa9d80d287a3e2bd5d7db52574e63fc
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: October 5, 2020
fopn.exe File name: fopn.exe
Size: 32.76 KB (32768 bytes)
MD5: 18806872c91201ed60a03e2d5ba11b29
Detection count: 31
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WAV6COM.dll File name: WAV6COM.dll
Size: 98.32 KB (98320 bytes)
MD5: 018de418ab505cd88ebb7d2254ee3ddb
Detection count: 30
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
avkernel.dll File name: avkernel.dll
Size: 311.29 KB (311296 bytes)
MD5: a845071e68995089588d94c2ac6a193a
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: October 5, 2020
WAV6COM.dll File name: WAV6COM.dll
Size: 77.82 KB (77824 bytes)
MD5: 1cf864219eb736fe04cfa3c6ac3efbe6
Detection count: 24
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: October 5, 2020
IEFWBHO.dll File name: IEFWBHO.dll
Size: 161.79 KB (161792 bytes)
MD5: 2117f61927d5acadffe0a812b9a55c5f
Detection count: 16
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
fopnl.dll File name: fopnl.dll
Size: 49.15 KB (49152 bytes)
MD5: 632da9b2a99f8a980a788d577835715d
Detection count: 15
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
asmngr.dll File name: asmngr.dll
Size: 65.53 KB (65536 bytes)
MD5: ee8bc376aa24fa57a5556718b808a164
Detection count: 14
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
C:\Windows\System32\stera.exe File name: stera.exe
Size: 6.14 KB (6144 bytes)
MD5: f3a417631ee06cd4c0553e176a2d1f72
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: C:\Windows\System32\stera.exe
Group: Malware file
Last Updated: October 3, 2022

Registry Modifications

The following newly produced Registry Values are:

CLSID{1234890A-5E6E-4867-8136-CA6F1456B235}{B2A3156E-3332-4b47-AF5A-5B121503514F}{E18B69D0-7E9E-4C6E-BDD8-879A1FFF7123}File name without pathWinAntiVirus Pro 2006.lnk

Additional Information

The following directories were created:
%ProgramFiles%\WinAntiVirus Pro 2006
The following cookies were detected:
winantivirus
Loading...