Threat Database Rogue Websites Virussweeper-scan.net

Virussweeper-scan.net

Virussweeper-scan.net is a browser hijacker promoting the rogue anti-spyware application called Malware Catcher 2009 (or, alternatively, as Malware Catcher). Due to affiliated trojans infiltrating the computer via security exploits and modifying the browser settings, web-surfing activities are redirected to the Virussweeper-scan.net domain. Here the computer is subject to a fake online scan that displays fictitious or grossly exaggerated infection results, all in order to intimidate the user into purchasing the fake spyware remover Malware Catcher.

File System Details

Virussweeper-scan.net may create the following file(s):
# File Name Detections
1. %UserProfile%\Recent\energy.sys
2. %UserProfile%\Recent\PE.sys
3. %UserProfile%\Recent\energy.exe
4. %UserProfile%\Recent\fix.sys
5. %Documents and Settings%\All Users\Application Data\7c69f0c\MCatcher.exe
6. %UserProfile%\Recent\CLSV.dll
7. %UserProfile%\Recent\exec.dll
8. %UserProfile%\Recent\tjd.exe
9. %UserProfile%\Recent\eb.tmp
10. %UserProfile%\Recent\std.drv
11. %UserProfile%\Start Menu\Programs\Malware Catcher 2009.lnk
12. %Documents and Settings%\All Users\Application Data\7c69f0c\SystemFeed\vd952342.bd
13. %UserProfile%\Application Data\Malware Catcher 2009
14. %UserProfile%\Desktop\Malware Catcher 2009.lnk
15. %UserProfile%\Recent\CLSV.drv
16. %UserProfile%\Recent\PE.drv
17. %UserProfile%\Start Menu\Malware Catcher 2009.lnk
18. %Documents and Settings%\All Users\Application Data\7c69f0c\SystemFeed
19. %Documents and Settings%\All Users\Application Data\SystemFeed\mctch.ini
20. %UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Malware Catcher 2009.lnk
21. %UserProfile%\Recent\cb.tmp
22. %UserProfile%\Recent\energy.tmp
23. %UserProfile%\Recent\tjd.tmp
24. %Documents and Settings%\All Users\Application Data\7c69f0c
25. %Documents and Settings%\All Users\Application Data\SystemFeed
26. %UserProfile%\Application Data\Malware Catcher 2009\Instructions.ini

Registry Details

Virussweeper-scan.net may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform "[xSP_2:2092962508]"
HKEY_CLASSES_ROOT\MCatcher.DocHostUIHandler
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "Malware Catcher 2009"
HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform "6989019803"

Trending

Most Viewed

Loading...