Threat Database Rogue Websites Virusinfocheck.com

Virusinfocheck.com

By GoldSparrow in Rogue Websites

Virusinfocheck.com is a browser hijacker promoting the rogue anti-spyware application known as Personal Antivirus. Typically intruding Trojan viruses will modify your browser settings in order to redirect your web-surfing activities to the virusinfocheck.com domain, where a false online scan of your computer reports fabricated infection results. This is to ensure you are intimidated enough to purchase and install Personal Antivirus.

File System Details

Virusinfocheck.com may create the following file(s):
# File Name Detections
1. %UserProfile%\Local Settings\Application Data\Microsoft\Windows\services.exe
2. %UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iv.exe
3. %Program Files%\Personal Antivirus\PerAvir.exe
4. %UserProfile%\Application Data\Microsoft\Windows\winlogon.exe
5. %UserProfile%\Application Data\Personal Antivirus\unins000.exe
6. %UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iMSh.png
7. %UserProfile%\Local Settings\Application Data\Microsoft\Windows\pguard.ini
8. %Documents and Settings%\All Users\Start Menu\Programs\Personal Antivirus\Personal Antivirus Home Page.lnk
9. %Program Files%\Personal Antivirus\db\DBInfo.ver
10. %Program Files%\Personal Antivirus\Languages
11. %Program Files%\Personal Antivirus\Languages\IAGer.lng
12. %UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Personal Antivirus.lnk
13. %UserProfile%\Application Data\Personal Antivirus\uill.ini
14. %UserProfile%\Application Data\Personal Antivirus\db\config.cfg
15. %Program Files%\Personal Antivirus
16. %Program Files%\Personal Antivirus\unins000.dat
17. %UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iGSh.png
18. %UserProfile%\Local Settings\Application Data\Microsoft\Windows\log.txt
19. %Documents and Settings%\All Users\Start Menu\Programs\Personal Antivirus
20. %Program Files%\Personal Antivirus\db
21. %Program Files%\Personal Antivirus\db\ia080618x.db
22. %Program Files%\Personal Antivirus\Languages\IAFr.lng
23. %Documents and Settings%\All Users\Start Menu\Programs\Personal Antivirus\Purchase License.lnk
24. %UserProfile%\Application Data\Personal Antivirus\settings.ini
25. %UserProfile%\Application Data\Personal Antivirus\db
26. %UserProfile%\Application Data\Personal Antivirus\db\Urls.inf
27. %Program Files%\Personal Antivirus\Explorer.ico
28. %Program Files%\Personal Antivirus\working.log
29. %WINDOWS%\system32\log.txt
30. %UserProfile%\Local Settings\Application Data\Microsoft\Internet Explorer\iPSh.png
31. %Documents and Settings%\All Users\Desktop\Personal Antivirus.lnk
32. %Documents and Settings%\All Users\Start Menu\Programs\Personal Antivirus\Personal Antivirus.lnk
33. %Program Files%\Personal Antivirus\db\ia080614.db
34. %Program Files%\Personal Antivirus\Languages\IAEs.lng
35. %Program Files%\Personal Antivirus\Languages\IAIt.lng
36. %UserProfile%\Application Data\Personal Antivirus
37. %UserProfile%\Application Data\Personal Antivirus\Uninstall Personal Antivirus.lnk
38. %UserProfile%\Application Data\Personal Antivirus\db\Timeout.inf
39. %Program Files%\Personal Antivirus\activate.ico
40. %Program Files%\Personal Antivirus\uninstall.ico

Registry Details

Virusinfocheck.com may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ITGrdEngine
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ITGRDENGINE
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "Personal Antivirus"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Personal Antivirus_is1
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer "PrS"

Trending

Most Viewed

Loading...