PC MightyMax

By ESGI Advisor in Rogue Registry Cleaner | 478 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (5 votes, average: 3.20 out of 5)
Loading ... Loading ...
Translate To:     Português
More... More

PC MightyMax Description

PC MightyMax is a fake registry cleaner that has been around since 2006. Since then, the criminals behind this bogus registry cleaner have released ‘new’ versions of PC MightyMax, such as PC MightyMax 2009 and PC MightyMax 2010. Make no mistake about it; PC MightyMax has no way of fixing your computer or cleaning your registry. Rather, PC MightyMax is a rogue security application, a fake security program that pretends to protect your computer from malware in order to steal your money. Promoted at the website PCMightyMax.net, PC MightyMax is a threat to inexperienced computer users. While PC MightyMax is problematic, more advanced rogue security programs have appeared since PC MightyMax’s heyday. This means that most security applications are well-equipped to handle this bogus security program. In fact, PC MightyMax can even be removed manually, by removing its registry entries from the Windows Registry and then deleting all files associated with this fake security tool.

The PC MightyMax Scam

Like most rogue security programs, PC MightyMax pretends to be a real security tool. Some ways in which PC MightyMax tricks its victims into downloading and installing PC MightyMax include a highly-convincing interface, error messages that appear genuine, a widespread online marketing campaign, and the PCMightyMax.net website itself. Malware analysts warn that PC MightyMax has no way of cleaning your registry, removing malware or helping your computer run more smoothly. This is because once PC MightyMax is installed, PC MightyMax will do nothing but display irritating error messages in order to convince the victim that they need to purchase a ‘full version’ of PC MightyMax, much like more recent rogue security applications. Unlike more dangerous rogue security programs, PC MightyMax will cause few other symptoms apart from its irritating pop-up windows. However, PC MightyMax gives its victims no way of uninstalling the program, meaning that an anti-malware program will be necessary for most computer users.

Why You Should Remove PC MightyMax Immediately

Every once in a while, PC MightyMax will display alarming pop-up Windows containing the string ‘CRITICAL ALERT’ or ‘Alert!!!’ which will be accompanied by an irritating, and considerably loud, beeping noise. While this alone can be enough to convince most computer users to remove PC MightyMax, this fake security program will also change your browser settings, run without your permission and connect to the Internet. The worst of all, PC MightyMax will seldom enter your computer alone and may be accompanied by other, more dangerous malware threats.

Type: Rogue Registry Cleaner

How Can You Detect PC MightyMax?

PC MightyMax Technical Report

As new PC MightyMax details are reported by our customers and findings from our Threat Research Center, we will update this section.

The following PC MightyMax files with its MD5s were created in the system:

File Name File Size MD5
ExeAfter.exe 25880 10411a721e16fbadf7feef097d6869a4
pcmm.exe 1836392 2744997a27ef80657ce307f9547769ed
PCMightyMaxSetup[1].EXE 4334008 bf96c71a52647b888a59695366dbf713
pcmm.exe 1833504 366b525077c45f98cf7cd970e5787e72
ExeAfter.exe 26144 0c86dfb33e8c3582bb2eae767ac58e33
pcmm2007.exe 1825560 b4ea59294a8a15f2c9db2e6f08836d8e
pcmm2007.exe 1823512 b2ed6f8f886328312f62f6cca953840e
pcmm2007.exe 1823512 4ec4e7541402ae75381495ae863d91aa
pcmm2007.exe 1823512 54babb48401fe7e1a24f8d98fd03a89e

PC MightyMax Removal Details

PC MightyMax has typically the following processes in memory:

  • PCMightyMaxSetup[1].EXE
  • %program_files%\PC MightyMax\ExeAfter.exe
  • ExeAfter.exe
  • %program_files%\PC MightyMax\beep.exe
  • pcmm.exe
  • PC MightyMax v9.msi
  • pcmm2007.exe

PC MightyMax creates the following files in the system:

  • Run PC MightyMax!.lnk
  • PC MightyMax v9.msi
  • PCMM2007RT
  • PCMMRealtime
  • Uninstall PC MightyMax v9.lnk

PC MightyMax created the following directories, files, paths:

  • %ProgramFiles%\PC MightyMax

PC MightyMax creates the following registry entries:

  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@^C:\Program Files\PC MightyMax\
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache@^C:\Program Files\PC MightyMax\pcmm.exe
  • HKEY_CURRENT_USER\Software\Microsoft\Installer\UpgradeCodes\713B41478A517224DA270783641C4644
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\713B41478A517224DA270783641C4644
  • Microsoft\Installer\Products\F0FA5D49EE6E57A4EB13C9C9A978DA54
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@^C:\Documents and Settings\Administrator\Start Menu\Programs\PC MightyMax\
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache@^C:\Program Files\PC MightyMax\ExeAfter.exe
  • HKEY_CURRENT_USER\Software\Microsoft\Installer\Features\F0FA5D49EE6E57A4EB13C9C9A978DA54
  • HKEY_LOCAL_MACHINE\SOFTWARE\PC MightyMax
  • PC MightyMax
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders@^C:\Documents and Settings\Administrator\Application Data\Microsoft\Installer\{94D5AF0F-E6EE-4A75-BE31-9C9C9A87AD45}\
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run@^PCMMRealtime
  • HKEY_CURRENT_USER\Software\Microsoft\Installer\Products\F0FA5D49EE6E57A4EB13C9C9A978DA54
  • HKEY_CURRENT_USER\Software\PC MightyMax
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{94D5AF0F-E6EE-4A75-BE31-9C9C9A87AD45}
  • Microsoft\Installer\Features\F0FA5D49EE6E57A4EB13C9C9A978DA54

Important Article Disclaimer

ESG Support Center

This entry was last updated on 11/19/09 and posted on 03/13/06. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Home | SpyHunter Risk Assessment Model | Privacy Policy | End User License Agreement | Additional Terms and Conditions
Copyright 2003-2012. Enigma Software Group USA, LLC. All Rights Reserved.