Home / Spyware Encyclopedia / Fake Anti Spyware.AntiMalware2009 << Back

Recommendation to Automatically remove Fake Anti Spyware.AntiMalware2009


Our products can remove Fake Anti Spyware.AntiMalware2009 and thousands of other Virus and Spyware automatically and instantly.

Fake Anti Spyware.AntiMalware2009 Details


  • Category Fake Anti Spyware
  • Discovered 9/30/2008 11:50:50 AM
  • Modified 4/9/2020 5:43:03 PM
  • Threat Level Critical
  • Category Description
    These are programs which look like any legitimate program but usually download without users permission, entice users into buying them by showing fake results to improve users PC performance. They may also download spyware and other unwanted programs.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
temp.dll 184320 1, 0, 0, 194645d50a1b2c8ed79359e5ccd41ee50 
DLDS2.EXE 16186  f73df230bb31c89f15c7fcb916d5e963 
LPHCNV8J0EA8A.EXE 58368  e2950629876714c7b801170907007e26 
MIRCOS.DLL 28672  e20d09c82d15c6410bc3eb486f137fca 
DLDS1.EXE 13686  c26d1c562ba637507e7bc012a785e016 
MIRCOSK.EXE 10752  c0b836937f5797a4e45925f9e52f0980 
WOAUOLT.EXE 23757  bfce7f7000a3b40e09dfdc23a53b5209 
D91BC61E.DLL 12005  b093acc7f113161317e19246a5d7133d 
LPHCNV8J0EA8A.EXE 203776  aca8b3bf12af0b652af5997db629bdc5 
RINGTTE.DLL 28672  ac28931ffb4100ed7c6d90ce11d190f9 

The following Registry Entries were created:
..\Software\Microsoft\\"kr_done1"\"1223637702"
..\Software\Microsoft\Windows NT\CurrentVersion\Windows\\"AppInit_DLLs"\"%WIN.SYS32%\RINGTTE.DLL"
..\System\CurrentControlSet\Services\8882FA1\(Default)
..\Software\Classes\Clsid\{4EFDDEBE-303C-4D1A-8C9E-E4F215C43651}\(Default)
..\Software\Classes\Clsid\{D91BC61E-7D78-4A2A-A336-7B97E8E52F0B}\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"361KARY"\"%WIN.SYS32%\WOAUOLT.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"INRHCJV8J0EA8A"\"%DAS.AU.LS.TEMP-INET-FILES%\CONTENT.IE5\ONPUVJK6\ANTIMALWARE2009INSTALLER[1].EXE /CR=D41D8CD98F00B204E9800998ECF8427E"
..\Software\Microsoft\Windows\CurrentVersion\Explorer\SHELLEXECUTEHOOKS\"{D91BC61E-7D78-4A2A-A336-7B97E8E52F0B}"
..\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\"SVLHSUTM.DLL"\"{2CB77746-8ECC-40CA-8217-10CA8BE5EFC8}"
..\System\CurrentControlSet\Services\D4F876\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware