Advanced Antivirus
Advanced Antivirus Description
Advanced Antivirus, AdvancedAntivirus, Advanced Antivirus 2008, AdvancedAntivirus 2008 or AdvancedAntivirus2008, is a rogue anti-spyware program known by the experts as “the worst threat of this year”, family of infamous Windows Antivirus 2008, Vista Antivirus 2008 and Ultimate Antivirus 2008.
Advanced Antivirus may have leaped into the user’s computer system through a Trojan, such as Zlob, or by using drive-by download methods without the user’s knowledge. Once Advanced Antivirus is installed, it will emulate a fake system scan and generate false threat reports in an attempt to trick the user into purchasing the full Advanced Antivirus commercial version. Advanced Antivirus has the ability to display fake warning notifications and a fake icon on the user’s system tray stating that the computer’s system is infected with spyware. Advanced Antivirus’s rogue messages may read: “Critical System Error”, “Your computer is infected”, “Trojan-Spy.win32@mx”, “Virus Alert”, and “Security Alert”. If the user is deceived and clicks on one of these messages, the user will be redirected to Advanced Antivirus’s website (www.aav2008.com), where Advanced Antivirus is advertised as a legit software. Advanced Antivirus promises to deliver a solution to your supposed threats, when in reality, Advanced Antivirus is just another scam created to steal money from credulous users. In addition, Advanced Antivirus may hijack user’s homepage, redirecting them to malicious websites.
Advanced Antivirus launches on every Windows start up and has the ability to recreate itself. Advanced Antivirus may be difficult to manually remove and it’s considered a threat to user’s personal and financial information.
Type: Rogue AntiSpyware Programs
How Can You Detect Advanced Antivirus?
Advanced Antivirus Technical Report
As new Advanced Antivirus details are reported by our customers and findings from our Threat Research Center, we will update this section.
The following Advanced Antivirus files with its MD5s were created in the system:
| File Name | File Size | MD5 |
|---|
| aav.exe | 333824 | ba7ff7ab4720cebc176b9666b52a6fee |
| AAVSetup[1].exe | 792893 | ee217ba37015111b3cfc64c3c35de87f |
| aav.exe | 333824 | d3e98a9db44e599ab3a7674aaeffd7f1 |
| aav.exe | 377344 | de26022f77cd4b90452097e8727d3cf1 |
| aav.exe | 333824 | 00cbcdff13e5c710341393a19d260da6 |
| aav.exe | 333824 | 6926bd8a5134262b308d7470bc5f5667 |
| aav.exe | 333824 | d0dd6935d04572ee74164ac7c2fd2589 |
| aav.exe | 407040 | 40ef838a59cff4b36193853a31bf3290 |
| aav.exe | 410112 | 2660b7844bbdfe0fa51b31ed86bb0d86 |
| aav.exe | 411136 | 626600d414841fa379b3c3ccef5d9a11 |
| AAVSetup[1].exe | 662810 | 2246bc5ab4e8a7f773438d56800549bf |
| aav.exe | 418304 | 01adc5d8a302c28bee6420c1dc3f65ff |
| aav.exe | 418816 | 815c318d73fe0feda6cc5dfd0031aa4e |
| aav.exe | 420352 | 54224dccd3c217d5e5b9619bfdc5d8ca |
| aav.exe | 425984 | c11310aadabc658e52db2f9dece55ee0 |
| AAV.ExE | 425984 | 81871b05df637a840fb67d481f95dd1a |
| winhelper.dll | 20992 | 71315d12f866d7703c89026cf1a0d4ef |
| winhelper.dll | 20992 | 13a14a0e6f7d3e4c7d643024374435a9 |
| winhelper.dll | 20992 | d700d7e062e28230cbe282aad5be7d0c |
| AAV.exe | 467968 | 806b74c1485d7c4e1f1f96f80435a823 |
Advanced Antivirus has typically the following processes in memory:
- AAVSetup[1].exe
- aav.exe
- c:\Program Files\AAV\aav.exe
- %PROGRAMFILES%\AAV\aav.exe
Advanced Antivirus creates the following registry entries:
- HKEY_CURRENT_USER\Software\AAV
- HKEY_CURRENT_USER\Software\AntiVirus
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “Antivirus”
- HKEY_CLASSES_ROOT\.key
- HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “Antivirus”
Important Article Disclaimer

English 
Deutsch
Español
Français
Portuguese
Advanced Antivirus 











