Home Malware Programs Rogue Anti-Spyware Programs XP-Shield

XP-Shield

Posted: May 15, 2008

Threat Metric

Threat Level: 10/10
Infected PCs: 40
First Seen: July 24, 2009
Last Seen: January 23, 2022
OS(es) Affected: Windows

ScreenshotXP-Shield is a rogue anti-spyware program that performs system scans that results in exaggerated spyware parasites. XP-Shield prompts users with multiple warning messages and popups that state XP-Shield detected spyware on your machine. This is a poor attempt by XP-Shield to get you to purchase the XP-Shield program. Do not fall for this trick. XP-Shield is not a legitimate spyware removal tool, only a waste of money.

XP-Shield program may be difficult to remove manually. XP-Shield is a clone of WinXProtector and AntiVirProtect. These popular rogue anti-spyware programs are reskinned and renamed to confuse unsuspecting computer users.

ScreenshotScreenshot

Aliases

Trojan.Vundo [Symantec]Win32/BHO.NOZ [NOD32]not-a-virus:FraudTool.Win32.XPShield [Ikarus]W32/Vundo.SD!tr [Fortinet]Win32/Vundo.CST [eTrust-Vet]Win32.HEURMalware [eSafe]FraudTool.XPShield.o (Not a Virus) [CAT-QuickHeal]Fake_AntiSpyware.BYT [AVG]PHISH/Fraud.XPShield.O.1 [AntiVir]Riskware.FraudTool.Win32.XPShield!IK [a-squared]Adware.VirtuMonde [Symantec]Virtumonde [Sunbelt]High Risk Fraudulent Security Program [Prevx1]Adware/XP-Shield [Panda]not-a-virus:FraudTool.Win32.XPShield.f [Kaspersky]
More aliases (51)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



XPShieldSetup.exe File name: XPShieldSetup.exe
Size: 450.47 KB (450479 bytes)
MD5: 57af4dfb6404a639b00ba8cb39dcd15b
Detection count: 95
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
64codec.dll File name: 64codec.dll
Size: 299 KB (299008 bytes)
MD5: 75d2871f1330785094a2ed609a538212
Detection count: 91
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
XPShieldSetup.exe File name: XPShieldSetup.exe
Size: 409.99 KB (409991 bytes)
MD5: ba070ffc0293ea59e49cab683d0f2454
Detection count: 64
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
ajvasys.dll File name: ajvasys.dll
Size: 299 KB (299008 bytes)
MD5: 461ee72b3aa8b07c715d730dfb64558e
Detection count: 22
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: January 10, 2022
C:\Documents and Settings\<username>\Documenti\Download\***s Rogue Pack\***'s Rogue Pack\XPShieldSetup.exe File name: XPShieldSetup.exe
Size: 454.65 KB (454656 bytes)
MD5: 25dd943d910048db5e5157735ba473a5
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: C:\Documents and Settings\<username>\Documenti\Download\***s Rogue Pack\***'s Rogue Pack\XPShieldSetup.exe
Group: Malware file
Last Updated: January 23, 2022
XP-Shield.exe File name: XP-Shield.exe
Size: 961.02 KB (961024 bytes)
MD5: 20994402cdd9c2ae57d335cbf638cc36
Detection count: 10
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
XPShieldSetup[1].exe File name: XPShieldSetup[1].exe
Size: 517.63 KB (517632 bytes)
MD5: 99c7271ac88edc56e1d89c9f738f889c
Detection count: 2
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
untshare.dll File name: untshare.dll
Size: 299 KB (299008 bytes)
MD5: 3ee666556f267be6e77ee5528bafa3e9
Detection count: 1
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: December 11, 2009
Loading...