VirusHeal 3.9

VirusHeal 3.9 is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.

General information:

Malware Name: VirusHeal 3.9
Malware Type: Rogue Security Program
Company Name: VirusHeal
Company URL: http://virusheal.com/
Threat Level: Elevated Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

VirusHeal provides you the software VirusHeal 3.9 that completely scans of your computer system to detect Spyware parasites. It has also the ability to review and remove all forms of Spyware and also gets you the regular updates on new Spyware threats. It also provides you the quarantine infected files for immediate protection.

Spyware Description:

VirusHeal 3.9 is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.

Characteristics/Symptoms:

    -> It shows false Warning messages. -> It also shows misleading scan Results. -> It can also install through Trojan exploits. -> It also uses aggressive advertising.

Additional information might be found here:

google Search at Google for VirusHeal 3.9
bing Search at Bing for VirusHeal 3.9
yahoo Search at Yahoo for VirusHeal 3.9

Processes Running:

VirusHeal 3.9.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Program Files\VirusHeal 3.9\antispy.vh 1400808 VH File
C:\Program Files\VirusHeal 3.9\blacklist.txt 50527 Text Document
C:\Program Files\VirusHeal 3.9\uninst.exe 41183 Application

Folder information Created after Installation:

Folder Location
C:\Program Files\VirusHeal 3.9\Lan
C:\Program Files\VirusHeal 3.9\Log

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\Classes\Interface\{10C4A25D-414E-45B7-8D78-B6679CC6E5C3}
HKEY_LOCAL_MACHINE \SOFTWARE\Classes\Interface\{1388D9AA-3AA0-463F-B836-0A25A47980BE}
HKEY_LOCAL_MACHINE \SOFTWARE\Classes\Interface\{3D28C8EB-1E06-409D-8520-E65CDD1A8559}