Nothing-Virus
Nothing-Virus is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.
General information:
| Malware Name: |
Nothing-Virus |
| Malware Type: |
Rogue Security Program |
| Company Name: |
nothing-virus.co.kr |
| Company URL: |
http://nothing-virus.co.kr/
|
| Threat Level: |
Elevated Risk |
| Operating System: |
WIN XP |
| Installation Type: |
Installed through EXE |
| Operation: |
Time of After Installation |
Company Description:
nothing-virus.co.kr provides you the software Nothing-Virus.
Spyware Description:
Nothing-Virus is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.
Characteristics/Symptoms:
-> It shows false Warning messages. -> It also shows misleading scan Results. -> It can also install through Trojan exploits. -> It also uses aggressive advertising.
Additional information might be found here:
Processes Running:
NVirus.exe
File information Created after Installation:
| File Location |
Size (Bytes) |
Type |
| C:\Program Files\NVirus\config.ini |
356 |
Configuration Settings |
| C:\Program Files\NVirus\image\left_btn_on_4.gif |
2832 |
GIF Image |
| C:\Program Files\NVirus\image\left_btn_on_6.gif |
2782 |
GIF Image |
Folder information Created after Installation:
| Folder Location |
| C:\Documents and Settings\[USER]\Start Menu\Programs\NViru |
| C:\Program Files\NViru |
Registry information Created after Installation:
| Main Registry Key |
Sub Registry Key |
Key Value Name |
| HKEY_CURRENT_USER |
\Software\NVirus |
ver |
| HKEY_CURRENT_USER |
\Software\NVirus |
wcode.da |
| HKEY_LOCAL_MACHINE |
\SOFTWARE\Classes\Borland.Midas_DatapacketRead.1 |
|