Registry Cleaner 32

Registry Clean32 is a program used to scan and fix registry errors. Registry Clean32 advertises itself through the Windows messenger service. These messenger service pop-ups inform the user that their registry needs to be repaired, even if it does not. A Rogue Security Program is software that purports to scan and detect malware or other problems on the computer, but which attempts to dupe or badger users into purchasing the program by presenting the user with intrusive, deceptive warnings and/or false, misleading scan results. Rogue Security Programs typically use aggressive, deceptive advertising and may be installed without adequate notice and consent, often though exploits.0

General information:

Malware Name: Registry Cleaner 32
Malware Type: Rogue Security Program
Company Name: Registry Cleaner 32
Company URL: http://www.registrycleaner32.com/
Threat Level: Moderate Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation.

Company Description:

Registry Cleaner 32 scans and repair errors in our System Registry. It ensures system stability, configuration and performance is optimal. Its advance detection algorithm gives the stability we expect from our windows installation. It allows full control of our startup programs, makes finding those pesky hidden processes easy and cleaning up IE has never been easier, empty our cache, delete our URL history, and more. Most browsers hijacks come as a ¨toolbar¨ Get rid of harmful toolbars quickly and easily. Quickly backup and restore our registry, we can restore single events from the history.

Spyware Description:

Registry Clean32 is a program used to scan and fix registry errors. Registry Clean32 advertises itself through the Windows messenger service. These messenger service pop-ups inform the user that their registry needs to be repaired, even if it does not. A Rogue Security Program is software that purports to scan and detect malware or other problems on the computer, but which attempts to dupe or badger users into purchasing the program by presenting the user with intrusive, deceptive warnings and/or false, misleading scan results. Rogue Security Programs typically use aggressive, deceptive advertising and may be installed without adequate notice and consent, often though exploits.0

Characteristics/Symptoms:

    -> False positives work as good to purchase -> False scan results -> Uses inadequate scan/detection scheme -> Uses out of date ref database0

Additional information might be found here:

google Search at Google for Registry Cleaner 32
bing Search at Bing for Registry Cleaner 32
yahoo Search at Yahoo for Registry Cleaner 32

Processes Running:

RegClean32.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Documents and Settings\sapna\Desktop\Registry Cleaner 32.lnk 554 Shortcut
C:\Program Files\RegClean32\unins000.dat 2085 DAT File
C:\Program Files\RegClean32\unins000.exe 674570 Application

Folder information Created after Installation:

Folder Location
C:\Program Files\RegClean32
C:\Program Files\RegClean32\Backup

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Registry Cleaner 32_is1 URLInfoAbout
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Registry Cleaner 32_is1 URLUpdateInfo
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Registry Cleaner 32_is1 UninstallString