Addwere

Addwere is a rogue security program that provides minimum or no protection against threats and the false positives work as goad to purchase. It shows Poor scan reports and false Detection. Falsely reports updating ref database.0

General information:

Malware Name: Addwere
Malware Type: Rogue Security Program
Company Name: ADDWERE.COM
Company URL: http://www.addwere.com/
Threat Level: Low Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

ADDWERE.COM provides you the software Addwere that is a program that eliminates all adwares, spywares, viruses, Dialers, and hijackers that might exist on your PC.ADDWERE is a program that uses a database with tens of thousands fingerprints of spyware adware, trojans and worms that can be updated automatically to provide protection from the latest danger. It has the ablitiy to set a scheduled Liveupdate to automatically update your program periodically or to select Manual Update to apply.

Spyware Description:

Addwere is a rogue security program that provides minimum or no protection against threats and the false positives work as goad to purchase. It shows Poor scan reports and false Detection. Falsely reports updating ref database.0

Characteristics/Symptoms:

    -> Shows false and misleading scan Results. -> False positives work as goad to purchase.

Additional information might be found here:

google Search at Google for Addwere
bing Search at Bing for Addwere
yahoo Search at Yahoo for Addwere

Processes Running:

SpyRem.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Documents and Settings\All Users\Start Menu\Programs\Addwere.com\Addwere™\Help.lnk unknown
C:\Documents and Settings\All Users\Start Menu\Programs\Addwere.com\Addwere™\Uninstall.lnk unknown
C:\Program Files\Addwere.com\Addwere\Errors.txt unknown

Folder information Created after Installation:

Folder Location
C:\Program Files\Addwere.com\Addwere

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_CLASSES_ROOT \CLSID\{45A5D9C0-DA2A-4490-84BC-2817C57AEBFE} 0
HKEY_CLASSES_ROOT \CLSID\{45A5D9C0-DA2A-4490-84BC-2817C57AEBFE}\InprocServer32 ThreadingModel0
HKEY_CLASSES_ROOT \CLSID\{509F840C-8FBE-4B39-8135-7AE4F77211BE} 0