Total Secure 2009

Domesticus By Domesticus in Rogue Anti-Spyware Program | 76 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...

Total Secure 2009 Description

Total Secure 2009, TotalSecure2009 or TotalSecure 2009, is a rogue anti-spyware application. Total Secure 2009 may be installed into the user’s computer system with the help of a Trojan called Zlob found in fake video codecs or by clicking on a download link from a malicious domain. Total Secure 2009 is also propagated through spam emails.

In addition, Total Secure 2009 generates fake scan results stating that it has detected spyware in order to trick the user into purchasing the program. Total Secure 2009 is a clone of IE Antivirus, IEDefender, Malware Bell and Files Secure.

Type: Rogue AntiSpyware Programs

How Can You Detect Total Secure 2009?

 
 

Download SpyHunter’s Detection Scanner
to Detect Total Secure 2009.

 
 

Total Secure 2009 Technical Report

As new Total Secure 2009 details are reported by our customers and findings from our Threat Research Center, we will update this section.

The following Total Secure 2009 files with its MD5s were created in the system:

File Name File Size MD5
scan.exe 1811968 b4578675ca3d5f947402f3a54c0c5759
TotalSecure2009[1].exe 3816052 7b2143275ef45332fc85219a590d2646
cfen32x.dll 24064 12f56ada6aca1ebd5b164c48e7f5a343
scan.exe 2019840 ef8e4fa294e4c6d29f5e65632512883c
cfax32x.dll 23552 3125c2c5b7805fe4c5146392acef7681
gcpta.dll 24064 6154b6896ed64a61fe24622422de26c7
pikavn.dll 110592 3ee3b480d4c8f36f6de37a785ff9d6cc
hare32.dll 65536 fec3968de8f683b42a7bd07bb32f944b
hare32.dll 57344 994ab644f953249bb4028fb3f76031e2
xappit.dll 53248 0948e63ffb252e89b85d490b78d2ec8f
ajki.dll 114688 1ee87cf3c92575893eece9c05cf279dc
TotalSecure2009[1].exe 1949638 eac3c2b05fed56183fa2da884b7913ee
scan.exe 3568640 2901bedfc10f163706f49c6eab20ae56
TotalSecure2009[1].exe 5617 b7e988140a41c899f7487961c7839aee
gpatbs.dll 61440 9cea4c854ed29e77b847cf691f4554bd
xappit.dll 53248 483aaf6dcf6382b69d5f738c5d3f0320
scan.exe 770560 0c13c77799f1cd81ef15bdc70fbd8568
scan.exe 214630 991b5679e56572256d44613e884222c0
scan.exe 770048 652363d7d283a0370bcffb802bcb3310
scan.exe 1945600 8a350aa919457ce49bfe8109012cde8e
SYSBAS~1.DLL 65536 2f1ee926382676140f2988e200cd94e2
scan.exe 3679232 659720c6c8df6d1660f23611a7eefd6d
rgf.dll 69632 adf77ce5a84d5bf12788f41a4b76a77a
ifsndu.dll 61440 f49adb7cb1ad2b3c203faac383a64014
mipinu.dll 61440 9c62f3906f449240cd21bc39d373e018
ifsndu.dll 73728 f521eb81607412c970b7fda5d853c0bc
scan.exe 2246656 a25690375bb5d4aa87a55dddd8f6c4c0
gopfa.dll 57344 a3e061600116538a7c0f40644a92bdb8
scan.exe 2241024 be28ae28755e7be7a138564c89e31d1b
SYSBAS~1.DLL 65559 e922cc2906f50e3438fb14f26b75527c
gopfa.dll 65536 d4c071fa69ce30e53fd4345cefeac603
ifsndu.dll 65536 96666686b1aa4f9c66379b7ee0464001
TotalSecure2009[1].exe 1006825 4eca6cbd72c83d412c889a3e3e6271c4
sysbase32.dll 57344 05962826a969869f1ddfe19e04c8b53d
dzhoil.dll 73728 13bdf89c76c03503ee137b06b3199ffd
ifsndu.dll 69632 5bd76b73eec60440be6192a01f6b1790

Total Secure 2009 Video Demo

Click on the “How Total Secure 2009 Infects Your Computer” video to see a Total Secure 2009 infection in action! See through the eyes of an unsuspecting Internet user while him/her is being victimized by Total Secure 2009.

At the end of this video, there’s a link to download SpyHunter’s Free Spyware Scanner. SpyHunter’s Free Spyware Scanner is for detection purposes only. To remove Total Secure 2009, you must purchase SpyHunter’s full version.

Tip: Turn your sound ON and watch the video in Full Screen mode to fully experience how Total Secure 2009 infects a computer. The video contains clickable buttons.

Total Secure 2009 has typically the following processes in memory:

  • scan.exe
  • %SYSTEMROOT%\system32\mipinu.dll
  • %SYSTEMROOT%\system32\gopfa.dll
  • %SYSTEMROOT%\system32\SYSBAS~1.DLL
  • TotalSecure2009[1].exe
  • mopona.dll
  • %PROGRAMFILES%\TS-2009\scan.exe
  • %SYSTEMROOT%\system32\ifsndu.dll
  • %SYSTEMROOT%\system32\dzhoil.dll
  • c:\Program Files\TotalSecure2009\uninstall.exe
  • hare32.dll
  • gopfa.dll
  • ifsndu.dll
  • dzhoil.dll

Total Secure 2009 created the following directories, files, paths:

  • %ProgramFiles%\TS2009
  • %ProgramFiles%\TotalSecure2009

Total Secure 2009 creates the following registry entries:

  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “TotalSecure2009″
  • 8EF40C36-293F-4749-8EA0-94FB3AD83FA1
  • 98237227-8F14-46CA-B743-241103BEE8A6
  • 5B171109-DED1-4403-90E9-6F7778533B9A
  • BCCCB3D5-17DC-43DD-9F46-A31AB28FECB2
  • 720F11ED-6980-432E-B402-63548BA2A33A
  • A2F253AD-1F23-4D87-A64B-D6987F38D981
  • DED2B61B-1A26-4566-BF2F-DE539D4468DD
  • 6F3F7760-9532-4481-9F7F-1E27D0DABD04
  • E20621C6-E1E1-4701-AE1C-6B74E57A46CF
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Total Secure 2009
  • TotalSecure2009
  • 0F95467C-AB44-4274-BEEA-2A75AB01B77E
  • 4D8F81B2-80C9-45B1-9F03-67B2B0D2320B
  • 57BE2636-F271-4151-9D4A-40A2663E4FD7
  • 435ADC46-DCAB-4593-92C8-25D2BEFCEAB7
  • 10026069-7A5F-4531-811E-C8DF20643BEE
  • C420CF9F-D9D6-421F-958F-AA59906C2B12
  • D76FBC4F-5E07-41FA-9013-FA3A53E46B95
  • 8F7B8659-9FB9-4239-88F6-75A5612ED0FE
  • HKEY_CURRENT_USER\Software\TotalSecure2009
  • D79DA7F1-9B93-45CC-9019-26BD0A086577
  • 1EF7B347-DBAF-412F-879D-DC7A95BFCC94
  • F7B20872-3B45-4F1D-A45E-A360E4102BDA
  • E402C66A-D5CB-441E-9F12-A5A864430AA2
  • A9D17DA6-022A-454A-AB26-E104C0F6D13A
  • FDF87042-0D74-42E4-AFC5-0CDA77BC74BA
  • 6ECB8E85-7A9E-4175-8113-1136D1A325DB
  • B31F9EF2-40D0-4F3E-9334-502C709DDC57
  • EFEA05D9-BCB2-4438-A4EB-BD467692C24F
  • 3A303EF6-2598-4D2D-B4DA-DEFA7CD0DC51

Important Article Disclaimer

ESG Support Center

Share and Enjoy: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Furl
  • StumbleUpon
  • Technorati
  • YahooMyWeb
This entry was posted on 09/4/08 and is filed under Rogue Anti-Spyware Program. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Poll

How much money have you spent trying to rid your PC of spyware?
View Results
Follow Us on Twitter

Archives

Home Sitemap RSS Feed Privacy Policy End User License Agreement Copyright 2003-2010. Enigma Software Group USA, LLC. All Rights Reserved.