AntiVirGear
AntiVirGear is a rogue security program that shows false warnings and misleading scan results. It also uses aggressive advertising and can also install through Trojan exploits.
General information:
Malware Name: |
AntiVirGear |
Malware Type: |
Rogue Security Program |
Company Name: |
AntiVirGear, Inc |
Company URL: |
http://antivirgear.com/
|
Threat Level: |
Elevated Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation |
Company Description:
AntiVirGear, Inc provides you the software AntiVirGear that offers its users the Quick and Full Scan modes. If you choose Quick scan the program will search infections in the most common places of spyware locations; if you choose Full Scan the entire
hard drive will be checked. This feature protects your PC from all known phishing attacks, popup blocking, browser infections and tracking cookies. AntiVirGear s Intuitive Interface was designed with home user in mind.
Spyware Description:
AntiVirGear is a rogue security program that shows false warnings and misleading scan results. It also uses aggressive advertising and can also install through Trojan exploits.
Characteristics/Symptoms:
-> It shows false Warning messages. -> It also shows misleading scan Results. -> It also uses aggressive advertising. -> It can also install through Trojan exploits.
Additional information might be found here:
Processes Running:
AntiVirGear 3.7.exe
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\AntiVirGear 3.7.lnk |
690 |
Shortcut |
C:\Documents and Settings\[USER]\Start Menu\AntiVirGear 3.7.lnk |
672 |
Shortcut |
C:\Program Files\AntiVirGear 3.7\AntiVirGear 3.7.exe |
1794048 |
Application |
Folder information Created after Installation:
Folder Location |
C:\Program Files\AntiVirGear 3.7\Lan |
C:\Program Files\AntiVirGear 3.7\Log |
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Classes\Interface\{8742F319-C916-4930-B781-1C148134C05C} |
|
HKEY_LOCAL_MACHINE |
\SOFTWARE\Classes\Interface\{A2224C72-745E-4046-882F-1A48C9311D77} |
|
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\AntiVirGear 3.7 |
SlowInfoCache |