Home / Spyware Encyclopedia / Fake Anti Spyware.Antivirus System PRO << Back

Recommendation to Automatically remove Fake Anti Spyware.Antivirus System PRO


Our products can remove Fake Anti Spyware.Antivirus System PRO and thousands of other Virus and Spyware automatically and instantly.

Fake Anti Spyware.Antivirus System PRO Details


  • Category Fake Anti Spyware
  • Discovered 11/20/2009 3:36:27 PM
  • Modified 12/27/2022 2:08:22 PM
  • Threat Level Critical
  • Category Description
    These are programs which look like any legitimate program but usually download without users permission, entice users into buying them by showing fake results to improve users PC performance. They may also download spyware and other unwanted programs.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
itunes.exe 96256Xygip2.10.2693.231916176c4bb4775f505324e6cc6c7ce443 
eg.exe 96256Onyndaizhiimafiv 70ad007ed1597de0481956e9bd683ca8 
3d4eacf4.exe 256512Hewlett-Packard7.0.0.177e8f83b7f280b53ab288240e895501406 
wstosysguard.exe 256512Hewlett-Packard7.0.0.177e8f83b7f280b53ab288240e895501406 
pc_antispyware2010.exe 590784 3.1.7.866f67f8c76fa467ee743ce5959ad98ec1 
pc_antispyware2010.exe 588886 3.1.7.8482d0452e73cf7e7937989ad180e0867e 
Installer2.exe 190307 3.1.7.69a1a0c9902ab25d47bc951f630ab48546 
pc_antispyware2010.exe 581363 3.1.7.69  
Installer2.exe 190061 3.1.7.6330d09989020fcb8f12a1aa3f87b4efa9 
Installer2.exe 185405 3.1.7.47d02f48a5467a5f71d0f7930e44029a75 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"twjwgvuf"\"%das.au.ls.app-data%\dvliqi\sywtsysguard.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"nbhpafiw"\"%das.au.ls.app-data%\uakygc\djedsysguard.exe"
..\System\CurrentControlSet\Services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list\"%win%\temp\alg.exe"\"%win%\temp\alg.exe:*:enabled:application layer gateway service"
..\System\CurrentControlSet\Services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list\"%das.au.app data%\windows genuine advantage\vmonitor.exe"\"%das.au.app data%\windows genuine advantage\vmonitor.exe:*:enabled:sam"
..\System\CurrentControlSet\Services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list\"%win%\temp\alg.exe"\"%win%\temp\alg.exe:*:enabled:application layer gateway service"
..\System\CurrentControlSet\Services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list\"%das.au.app data%\windows genuine advantage\vmonitor.exe"\"%das.au.app data%\windows genuine advantage\vmonitor.exe:*:enabled:sam"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"vmonitor"\"%das.au.app data%\windows genuine advantage\vmonitor.exe -mode=background -check=memory"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"system tool"\"%pf%\wwpavt\cmvesysguard.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"system tool"\"%pf%\xfbhyu\wstosysguard.exe"
..\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f5f14e7a-f59d-45a0-bdc5-a9f5454f0bcf}\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware