Nothing-Virus
Nothing-Virus is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.
General information:
Malware Name: |
Nothing-Virus |
Malware Type: |
Rogue Security Program |
Company Name: |
nothing-virus.co.kr |
Company URL: |
http://nothing-virus.co.kr/
|
Threat Level: |
Elevated Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation |
Company Description:
nothing-virus.co.kr provides you the software Nothing-Virus.
Spyware Description:
Nothing-Virus is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.
Characteristics/Symptoms:
-> It shows false Warning messages. -> It also shows misleading scan Results. -> It can also install through Trojan exploits. -> It also uses aggressive advertising.
Additional information might be found here:
Processes Running:
NVirus.exe
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
C:\Program Files\NVirus\config.ini |
356 |
Configuration Settings |
C:\Program Files\NVirus\image\left_btn_on_4.gif |
2832 |
GIF Image |
C:\Program Files\NVirus\image\left_btn_on_6.gif |
2782 |
GIF Image |
Folder information Created after Installation:
Folder Location |
C:\Documents and Settings\[USER]\Start Menu\Programs\NViru |
C:\Program Files\NViru |
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |
HKEY_CURRENT_USER |
\Software\NVirus |
ver |
HKEY_CURRENT_USER |
\Software\NVirus |
wcode.da |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Classes\Borland.Midas_DatapacketRead.1 |
|