OSBodyGuard
OSBodyGuard is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.
General information:
Malware Name: |
OSBodyGuard |
Malware Type: |
Rogue Security Program |
Company Name: |
OS Bodyguard Company |
Company URL: |
http://www.osbodyguard.com/
|
Threat Level: |
High Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation |
Company Description:
OS Bodyguard Company provides you the software OSBodyGuard that is a powerful tool for detecting and deleting spyware and other harmful software from your PC. The scanner contains a special heuristic module which allows detection of even the most
recent types of harmful software (spyware, adware, riskware, etc) which are not available in the scanner s database. It works at Operating System s kernel level, that allows detecting of stealth software like user-mode root-kits.
Spyware Description:
OSBodyGuard is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.
Characteristics/Symptoms:
-> It shows false Warning messages. -> It also shows misleading scan Results. -> It can also install through Trojan exploits. -> It also uses aggressive advertising.
Additional information might be found here:
Processes Running:
osbodyguard.exe
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
C:\Documents and Settings\All Users\Start Menu\Programs\OSBodyguard\Uninstall OSBodyguard.lnk |
561 |
Shortcut |
C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\OSBodyguard.lnk |
582 |
Shortcut |
desktop \OSBodyguard.lnk |
564 |
Shortcut |
Folder information Created after Installation:
Folder Location |
C:\Documents and Settings\All Users\Start Menu\Programs\OSBodyguar |
C:\Program Files\OSBodyguard\dl |
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OSBodyguard_is1 |
Inno Setup: User |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OSBodyguard_is1 |
InstallLocation |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OSBodyguard_is1 |
NoRepair |