VirusHeal 4.0
VirusHeal 4.0 is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.
General information:
Malware Name: |
VirusHeal 4.0 |
Malware Type: |
Rogue Security Program |
Company Name: |
VirusHeal |
Company URL: |
http://virusheal.com/
|
Threat Level: |
Elevated Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation |
Company Description:
VirusHeal provides you the software VirusHeal 4.0 that completely scans of your computer system to detect Spyware parasites. It has also the ability to review and remove all forms of Spyware and also gets you the regular updates on new Spyware threats.
It also provides you the quarantine infected files for immediate protection.
Spyware Description:
VirusHeal 4.0 is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.
Characteristics/Symptoms:
-> It shows false Warning messages. -> It also shows misleading scan Results. -> It can also install through Trojan exploits. -> It also uses aggressive advertising.
Additional information might be found here:
Processes Running:
VirusHeal 4.0.exe
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
C:\Documents and Settings\[USER]\Start Menu\Programs\VirusHeal 4.0\VirusHeal 4.0 Website.lnk |
660 |
Shortcut |
C:\Program Files\VirusHeal 4.0\antispy.vh |
1401224 |
VH File |
C:\Program Files\VirusHeal 4.0\blacklist.txt |
50527 |
Text Document |
Folder information Created after Installation:
Folder Location |
C:\Documents and Settings\[USER]\Start Menu\Programs\VirusHeal 4. |
C:\Program Files\VirusHeal 4. |
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Classes\Interface\{E5BD6449-64A6-4794-9537-0EAAFBAC9DC6} |
|
HKEY_LOCAL_MACHINE |
\SOFTWARE\Classes\TypeLib\{60B3B429-ADE8-4E3A-B824-C5784906CEFF} |
|
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\VirusHeal 4.0.exe |
|