Rogue software details: AdvancedDefender
Tuesday, 09 February 2010

 

 

Active Image

 

Known system changes:

Files
%Desktop%\Advanced Defender.lnk
%Windir%\secureit.com
%Windir%\microsoftdefend.dll
%Windir%\certofsystem.exe
%Windir%\explorers.exe
%Windir%\regp.exe
%Windir%\spoos.exe
%Program Files%\Advanced Defender\advanceddefender.exe

Folders
%ProgramFiles%\Advanced Defender
%StartMenu%\Programs\Advanced Defender

Registry Entries
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Advanced Defender
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced Defender
Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Value: advanceddefender
Data: C:\Program Files\Advanced Defender\advanceddefender.exe

 

 
< Prev   Next >
Advertisement
© d-PIT, 2007-2010.

Site Disclaimer