VirusHeal 4.0

VirusHeal 4.0 is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.

General information:

Malware Name: VirusHeal 4.0
Malware Type: Rogue Security Program
Company Name: VirusHeal
Company URL: http://virusheal.com/
Threat Level: Elevated Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

VirusHeal provides you the software VirusHeal 4.0 that completely scans of your computer system to detect Spyware parasites. It has also the ability to review and remove all forms of Spyware and also gets you the regular updates on new Spyware threats. It also provides you the quarantine infected files for immediate protection.

Spyware Description:

VirusHeal 4.0 is a rogue security program that shows false Warning messages. It also shows misleading scan Results. It also uses aggressive advertising and can also install through Trojan exploits.

Characteristics/Symptoms:

    -> It shows false Warning messages. -> It also shows misleading scan Results. -> It can also install through Trojan exploits. -> It also uses aggressive advertising.

Additional information might be found here:

google Search at Google for VirusHeal 4.0
bing Search at Bing for VirusHeal 4.0
yahoo Search at Yahoo for VirusHeal 4.0

Processes Running:

VirusHeal 4.0.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Documents and Settings\[USER]\Start Menu\Programs\VirusHeal 4.0\VirusHeal 4.0 Website.lnk 660 Shortcut
C:\Program Files\VirusHeal 4.0\antispy.vh 1401224 VH File
C:\Program Files\VirusHeal 4.0\blacklist.txt 50527 Text Document

Folder information Created after Installation:

Folder Location
C:\Documents and Settings\[USER]\Start Menu\Programs\VirusHeal 4.
C:\Program Files\VirusHeal 4.

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE \SOFTWARE\Classes\Interface\{E5BD6449-64A6-4794-9537-0EAAFBAC9DC6}
HKEY_LOCAL_MACHINE \SOFTWARE\Classes\TypeLib\{60B3B429-ADE8-4E3A-B824-C5784906CEFF}
HKEY_LOCAL_MACHINE \SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\VirusHeal 4.0.exe