Av.exe

Av.exe is a malicious process also known as W32/Alphx.worm.a. Av.exe. Av.exe is able to enter a system via unsolicited e-mails or it can come bundled with other malware. When executed Av.exe is a worm that can self-replicate and make alterations to a victim's web browser settings. Av.exe also has spyware functionalities and is considered a privacy risk. Av.exe can be completely removed with a recognized anti-spyware application.

File System Details

Av.exe may create the following file(s):
# File Name Detections
1. %UserProfile%\Local Settings\Application Data\av.exe
2. %UserProfile%\Local Settings\Application Data\WRblt8464P

Registry Details

Av.exe may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command "(Default)" = "%UserProfile%\Local Settings\Application Data\av.exe" /START "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "FirewallOverride" = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\av.exe" /START "C:\Program Files\Mozilla Firefox\firefox.exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center "AntiVirusOverride" = "1"
HKEY_CLASSES_ROOT\secfile\shell\open\command "(Default)" = "%UserProfile%\Local Settings\Application Data\av.exe" /START "%1" %*
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command “(Default)" = "%UserProfile%\Local Settings\Application Data\av.exe" /START "C:\Program Files\Internet Explorer\iexplore.exe"

Related Posts

Trending

Most Viewed

Loading...