Vista Malware 2010

Vista Malware 2010 is a fake anti-spyware application that spreads via sneaky Trojans. Once inside a system, Vista Malware 2010 will generate a bogus system scan, security alerts and pop-up messages in order to scare the user into thinking that the system is infected with malware. The user will then be prompted to purchase the "full" version of Vista Malware 2010 in order to remove all the detected computer threats. Users should ignore all security notifications displayed by Vista Malware 2010 and have the rogueware removed as soon as possible.

File System Details

Vista Malware 2010 may create the following file(s):
# File Name Detections
1. %UserProfile%\AppData\Local\ave.exe

Registry Details

Vista Malware 2010 may create the following registry entry or registry entries:
HKEY_CLASSES_ROOT\.exe\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\ave.exe" /START "%1? %*
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command “(Default)" = "%UserProfile%\Local Settings\Application Data\ave.exe" /START "%Program Files%\Mozilla Firefox\firefox.exe" -safe-mode
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "FirewallOverride" = "1?
HKEY_CURRENT_USER\Software\Classes\secfile\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\ave.exe" /START "%1? %*
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\ave.exe" /START "%Program Files%\Mozilla Firefox\firefox.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "AntiVirusOverride" = "1?
HKEY_CURRENT_USER\Software\Classes\.exe\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\ave.exe" /START "%1? %*
HKEY_CLASSES_ROOT\secfile\shell\open\command “(Default)" = "%UserProfile%\Local Settings\Application Data\ave.exe" /START "%1? %*
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\ave.exe" /START "%Program Files%\Internet Explorer\iexplore.exe"

Trending

Most Viewed

Loading...