Spy Hazard

Spy Hazard is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.

General information:

Malware Name: Spy Hazard
Malware Type: Rogue Security Program
Company Name: SpyHazard
Company URL: http://spyhazard.com/
Threat Level: High Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

SpyHazard provides you the software Spy Hazard that is the latest and the most technologically advanced application on the Internet for detection and removal of potentially undesired items. SpyHazard simply guarantees removal of all spyware and related harmful infections from your PC with supported live service.

Spyware Description:

Spy Hazard is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.

Characteristics/Symptoms:

    -> It shows false Warning messages. -> It also shows misleading scan Results. -> It can also install through Trojan exploits. -> It also uses aggressive advertising.

Additional information might be found here:

google Search at Google for Spy Hazard
bing Search at Bing for Spy Hazard
yahoo Search at Yahoo for Spy Hazard

Processes Running:

SpyHazard.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\SpyHazard 3.1.lnk 616 Shortcut
C:\Program Files\SpyHazard\shaz.dat 1397080 DAT File
desktop \SpyHazard.lnk 598 Shortcut

Folder information Created after Installation:

Folder Location
C:\Documents and Settings\[USER]\Start Menu\Programs\SpyHazar
C:\Program Files\SpyHazard\Quarantin

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\Classes\Interface\{7C87E454-6F5E-4387-B110-268B848D99FD}
HKEY_LOCAL_MACHINE \SOFTWARE\Classes\Interface\{82C20831-9B76-4821-90B6-EB7FCED8B4EF}
HKEY_LOCAL_MACHINE \SOFTWARE\Classes\Interface\{9002C0CF-B5DA-4980-83B2-F248461A5035}