RegSort
RegSort is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.
General information:
Malware Name: |
RegSort |
Malware Type: |
Rogue Security Program |
Company Name: |
RegSort |
Company URL: |
http://www.regsort.com/
|
Threat Level: |
Moderate Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation |
Company Description:
RegSort provides you the software RegSort that Repair invalid registry entries that are a common cause of Windows crashes and error messages .It Optimize your system by compacting the wasted space and gaps in the registry. It improves system performance
and stability by removing orphaned references RegSort comes with its own Registry Tweaks.
Spyware Description:
RegSort is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.
Characteristics/Symptoms:
-> It shows false Warning messages. -> It also shows misleading scan Results. -> It can also install through Trojan exploits. -> It also uses aggressive advertising.
Additional information might be found here:
Processes Running:
RegSort.exe
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
C:\Documents and Settings\All Users\Start Menu\Programs\RegSort v1.1.5\RegSort.lnk |
571 |
Shortcut |
C:\Documents and Settings\All Users\Start Menu\Programs\RegSort v1.1.5\Uninstall RegSort.lnk |
578 |
Shortcut |
desktop \RegSort.lnk |
559 |
Shortcut |
Folder information Created after Installation:
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B72123A9-CACD-407A-8F2B-4CFC2ADD39EF}_is1 |
Inno Setup: Icon Group |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B72123A9-CACD-407A-8F2B-4CFC2ADD39EF}_is1 |
NoRepair |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B72123A9-CACD-407A-8F2B-4CFC2ADD39EF}_is1 |
QuietUninstallString |