Antivirus Plus

Threat Scorecard

Ranking: 15,686
Threat Level: 100 % (High)
Infected Computers: 30
First Seen: July 24, 2009
Last Seen: May 4, 2023
OS(es) Affected: Windows

Antivirus Plus is a fake anti-spyware application that is often voluntary downloaded from malicious websites by unsuspecting users. Antivirus Plus can also be unknowingly downloaded with video codecs or freeware. Trojans also distribute Antivirus Plus by exploiting system vulnerabilities or attaching themselves to unsolicited e-mails. Once the Trojan is inside a system it will modify the hosts file and may direct users to security.microsoft.com.

Antivirus Plus will also create a start-up registry and run a fake system scan which will produce fabricated results claiming that the system is infected with several parasites. Following the scan report, users will be advised to pay for the "full version" of Antivirus Plus in order to remove all the detected parasites. All parasite detections made by Antivirus Plus are fake; Antivirus Plus is not a legitimate security tool.

Aliases

15 security vendors flagged this file as malicious.

Anti-Virus Software Detection
Sunbelt Trojan.Win32.Fakeplus.gen (v)
NOD32 a variant of Win32/Kryptik.AXY
McAfee FakeAlert-KL
K7AntiVirus not-a-virus:FraudTool.Win32.AntivirusPlus.mj
DrWeb Trojan.Fakealert.5868
CAT-QuickHeal FraudTool.AntivirusPlus.mj (Not a Virus)
BitDefender Trojan.Generic.2300691
Symantec Trojan.Fakeavalert
McAfee+Artemis potentially unwanted program Generic!Artemis
K7AntiVirus not-a-virus:FraudTool.Win32.AntivirusPlus.a
Ikarus BehavesLike.Trojan.FirewallBypass
F-Secure FraudTool.Win32.AntivirusPlus.a
BitDefender BehavesLike:Trojan.FirewallBypass
Avast Win32:Rootkit-gen
AntiVir TR/Fake.Antivirus.Plus.A

SpyHunter Detects & Remove Antivirus Plus

File System Details

Antivirus Plus may create the following file(s):
# File Name MD5 Detections
1. AntiVirus Plus..exe 68ee8b3b7e4bdd979da9a9758f49f356 0
2. AntiVirus Plus.70159.exe 44b469c1eee505a043d6aeb55029cac0 0
3. Antivirus Plus.exe 2537dc71f01d2779331f7b39a6ef0023 0
4. Antivirus Plus.exe 93183f38d13144afecb1f4dc6bb18ffa 0
5. Antivirus Plus.exe 7781ab40da9596e3d6972e7b00cd0a5e 0
6. InternetExplorer.dll 892d3f4d513089b891fc7592ab217bce 0
7. AntivirusPlus[1].exe 4efdbac4f793a43cf5d0ecc899808639 0
8. AntivirusPlus[1].exe, rundll32.exe 766c97296e74b93510042e8942d5b13b 0
9. AntivirusPlus_ba[1].exe bf8deda696aaacbd85651d56216ff8d1 0
10. AntivirusPlus[1].exe, rundll32.exe f0bc697765f31bd431e776387aca2c7f 0
11. InternetExplorer.dll,InternetExplorer[1].dll 7c1a172b45f3669c416102753009ba65 0
12. installer_1[1].exe 4e1bfe52220ef3a485ca7db7d3001b99 0
13. AntivirusPlus[1].exe,rundll32.exe fa46309f8a41bfe11f44028b0291dc95 0
14. setup[1].exe f4b27d042b55cfd3283af159b2d754fe 0
15. InternetExplorer.dll 5130c9ab0b7bebab95fbc174557231a4 0
16. avphl.dll 1d5c6bcb5f8b84c3af582d7febd2aa11 0
17. rundll32.exe, AntivirusPlus.exe 53d722d9d8de0115a6afa8c544d421cc 0
18. AntiVirus Plus.70159.exe 64ba775f7677913e971b6d5649b38830 0
19. AntiVirus_Plus.70367.dll, avplus[2].dll 567be587d4b5f013301c423e8d5c4770 0
20. zodipibe.exe 8d69b34a23352a4a06480b6c609bf9b5 0
21. AntiVirusPlus.70367200.dll e2d3ec74857e88294cc8611dd3707189 0
22. AntiVirus Plus.70700.dll 911a4a3c5b3a105b7a24ca0c756d707a 0
23. AntiVirus Plus.70700.dll d77a97cc4f2b4b1f6e0bc40d775d614f 0
24. rundll32.exe 9fcd867dc11848fc5d21b21445fbc7b9 0
25. rundll32.exe 4d27bd17e7ddfc8d1b3434ed7d37ceed 0
26. AntiVirus Plus.70350.exe 262e70527fed03ac093d755854647c95 0
More files

Registry Details

Antivirus Plus may create the following registry entry or registry entries:
File name without path
Antivirus Plus.lnk
Run keys
AntiVirus Plus

Directories

Antivirus Plus may create the following directory or directories:

%AppData%\AntiVirus Plus
%ProgramFiles%\Antivirus Plus
%UserProfile%\Local Settings\Application Data\AntiVirus Plus

1 Comment

Your thinking matches mine - great minds think alike!

Related Posts

Trending

Most Viewed

Loading...