Threat Database Rogue Websites Awareremover2009.microsoft.com

Awareremover2009.microsoft.com

Awareremover2009.microsoft.com is a misleading domain that is used to advertise and spread the fake rogue security tool Antivirus System PRO. Awareremover2009.microsoft.com is spread with the help of a Trojan and displays a fake warning page indicating that the user is browsing malicious sites. The Trojan ensures that the victim is continuously redirected to Awareremover2009.microsoft.com, where recommendations are given to purchase Antivirus System PRO. The warnings displayed by Awareremover2009.microsoft.com are false and Antivirus System PRO cannot protect your computer from any type of malware.

File System Details

Awareremover2009.microsoft.com may create the following file(s):
# File Name Detections
1. %WINDOWS%\sysguard.exe
2. %WINDOWS%\system32\iehelper.dll

Registry Details

Awareremover2009.microsoft.com may create the following registry entry or registry entries:
HKEY_CLASSES_ROOT\CLSID\{BAD4551D-9B24-42cb-9BCD-818CA2DA7B63}
HKEY_CURRENT_USER\Software\AvScan
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “system tool”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BAD4551D-9B24-42cb-9BCD-818CA2DA7B63}

Trending

Most Viewed

Loading...