Advanced Antivirus

GoldSparrow By GoldSparrow in Rogue Anti-Spyware Program | 155 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (1 votes, average: 5.00 out of 5)
Loading ... Loading ...

Advanced Antivirus Description

 
 
Image Screenshot
[+] Click Image to Enlarge
 
 

Advanced Antivirus, AdvancedAntivirus, Advanced Antivirus 2008, AdvancedAntivirus 2008 or AdvancedAntivirus2008, is a rogue anti-spyware program known by the experts as “the worst threat of this year”, family of infamous Windows Antivirus 2008, Vista Antivirus 2008 and Ultimate Antivirus 2008.

Advanced Antivirus may have leaped into the user’s computer system through a Trojan, such as Zlob, or by using drive-by download methods without the user’s knowledge. Once Advanced Antivirus is installed, it will emulate a fake system scan and generate false threat reports in an attempt to trick the user into purchasing the full Advanced Antivirus commercial version. Advanced Antivirus has the ability to display fake warning notifications and a fake icon on the user’s system tray stating that the computer’s system is infected with spyware. Advanced Antivirus’s rogue messages may read: “Critical System Error”, “Your computer is infected”, “Trojan-Spy.win32@mx”, “Virus Alert”, and “Security Alert”. If the user is deceived and clicks on one of these messages, the user will be redirected to Advanced Antivirus’s website (www.aav2008.com), where Advanced Antivirus is advertised as a legit software. Advanced Antivirus promises to deliver a solution to your supposed threats, when in reality, Advanced Antivirus is just another scam created to steal money from credulous users. In addition, Advanced Antivirus may hijack user’s homepage, redirecting them to malicious websites.

Advanced Antivirus launches on every Windows start up and has the ability to recreate itself. Advanced Antivirus may be difficult to manually remove and it’s considered a threat to user’s personal and financial information.

Type: Rogue AntiSpyware Programs

How Can You Detect Advanced Antivirus?

 
 

Download SpyHunter’s Detection Scanner
to Detect Advanced Antivirus.

 
 

Advanced Antivirus Technical Report

As new Advanced Antivirus details are reported by our customers and findings from our Threat Research Center, we will update this section.

The following Advanced Antivirus files with its MD5s were created in the system:

File Name File Size MD5
aav.exe 333824 ba7ff7ab4720cebc176b9666b52a6fee
AAVSetup[1].exe 792893 ee217ba37015111b3cfc64c3c35de87f
aav.exe 333824 d3e98a9db44e599ab3a7674aaeffd7f1
aav.exe 377344 de26022f77cd4b90452097e8727d3cf1
aav.exe 333824 00cbcdff13e5c710341393a19d260da6
aav.exe 333824 6926bd8a5134262b308d7470bc5f5667
aav.exe 333824 d0dd6935d04572ee74164ac7c2fd2589
aav.exe 407040 40ef838a59cff4b36193853a31bf3290
aav.exe 410112 2660b7844bbdfe0fa51b31ed86bb0d86
aav.exe 411136 626600d414841fa379b3c3ccef5d9a11
AAVSetup[1].exe 662810 2246bc5ab4e8a7f773438d56800549bf
aav.exe 418304 01adc5d8a302c28bee6420c1dc3f65ff
aav.exe 418816 815c318d73fe0feda6cc5dfd0031aa4e
aav.exe 420352 54224dccd3c217d5e5b9619bfdc5d8ca
aav.exe 425984 c11310aadabc658e52db2f9dece55ee0
AAV.ExE 425984 81871b05df637a840fb67d481f95dd1a
winhelper.dll 20992 71315d12f866d7703c89026cf1a0d4ef
winhelper.dll 20992 13a14a0e6f7d3e4c7d643024374435a9
winhelper.dll 20992 d700d7e062e28230cbe282aad5be7d0c
AAV.exe 467968 806b74c1485d7c4e1f1f96f80435a823

Advanced Antivirus has typically the following processes in memory:

  • AAVSetup[1].exe
  • aav.exe
  • c:\Program Files\AAV\aav.exe
  • %PROGRAMFILES%\AAV\aav.exe

Advanced Antivirus creates the following registry entries:

  • HKEY_CURRENT_USER\Software\AAV
  • HKEY_CURRENT_USER\Software\AntiVirus
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run “Antivirus”
  • HKEY_CLASSES_ROOT\.key
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “Antivirus”

Important Article Disclaimer

ESG Support Center

Share and Enjoy: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Furl
  • StumbleUpon
  • Technorati
  • YahooMyWeb
This entry was posted on 06/20/08 and is filed under Rogue Anti-Spyware Program. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Poll

How much money have you spent trying to rid your PC of spyware?
View Results
Follow Us on Twitter

Archives

Home Sitemap RSS Feed Privacy Policy End User License Agreement Copyright 2003-2010. Enigma Software Group USA, LLC. All Rights Reserved.