Www1.useclean-atyour-sys.in
Www1.useclean-atyour-sys.in is a misleading website that is involved in the malvertising of Security Antivirus. Only victims that have previously been infected with Trojans related to www1.useclean-atyour-sys.in will encounter the malicious domain. Once a victim has visited www1.useclean-atyour-sys.in a fake online system scan will be run and the victim will be informed that his/her system is severely infected with harmful computer parasites. Bogus security alerts and pop-ups will also be launched to further scare the victim into purchasing the rogue Security Antivirus. Do not trust anything from www1.useclean-atyour-sys.in or Security Antivirus they are malicious programs that should be removed upon detection.
File System Details
| # | File Name |
Detections
Detections: The number of confirmed and suspected cases of a particular threat detected on
infected computers as reported by SpyHunter.
|
|---|---|---|
| 1. | SA345d.exe | |
| 2. | %Documents and Settings%\All Users\Application Data\345d567\SA345d.exe | |
| 3. | %Documents and Settings%\[UserName]\Recent\cid.dll | |
| 4. | %Documents and Settings%\[UserName]\Recent\ddv.sys | |
| 5. | %Documents and Settings%\[UserName]\Recent\runddlkey.dll | |
| 6. | PE.exe | |
| 7. | %Documents and Settings%\All Users\Application Data\345d567\mozcrt19.dll | |
| 8. | %Documents and Settings%\[UserName]\Recent\ANTIGEN.exe | |
| 9. | %Documents and Settings%\[UserName]\Recent\ddv.dll | |
| 10. | %Documents and Settings%\[UserName]\Recent\PE.sys | |
| 11. | %Documents and Settings%\[UserName]\Recent\tjd.sys | |
| 12. | ANTIGEN.exe | |
| 13. | Std.exe | |
| 14. | %Documents and Settings%\All Users\Application Data\345d567\sqlite3.dll | |
| 15. | %Documents and Settings%\[UserName]\Recent\DBOLE.sys | |
| 16. | %Documents and Settings%\[UserName]\Recent\PE.exe | |
| 17. | %Documents and Settings%\[UserName]\Recent\std.exe | |
| 18. | %Documents and Settings%\All Users\Application Data\345d567\SAV.ico | |
| 19. | %Documents and Settings%\All Users\Application Data\345d567\BackUp\Adobe Reader Synchronizer.lnk | |
| 20. | %Documents and Settings%\All Users\Application Data\345d567\SAVSys\vd952342.bd | |
| 21. | %Documents and Settings%\[UserName]\Application Data\Microsoft\Internet Explorer\Quick Launch\Security Antivirus.lnk | |
| 22. | %Documents and Settings%\[UserName]\Recent\ANTIGEN.drv | |
| 23. | %Documents and Settings%\[UserName]\Recent\FS.drv | |
| 24. | %Documents and Settings%\[UserName]\Recent\PE.tmp | |
| 25. | %Documents and Settings%\[UserName]\Start Menu\Programs\Security Antivirus.lnk | |
| 26. | %Documents and Settings%\All Users\Application Data\345d567\72.mof | |
| 27. | %Documents and Settings%\All Users\Application Data\345d567\BackUp\Adobe Reader Speed Launch.lnk | |
| 28. | %Documents and Settings%\All Users\Application Data\345d567\SAVSys | |
| 29. | %Documents and Settings%\[UserName]\Application Data\Security Antivirus | |
| 30. | %Documents and Settings%\[UserName]\Desktop\Security Antivirus.lnk | |
| 31. | %Documents and Settings%\[UserName]\Recent\energy.tmp | |
| 32. | %Documents and Settings%\[UserName]\Recent\PE.drv | |
| 33. | %Documents and Settings%\[UserName]\Start Menu\Security Antivirus.lnk | |
| 34. | %Documents and Settings%\All Users\Application Data\345d567 | |
| 35. | %Documents and Settings%\All Users\Application Data\345d567\BackUp | |
| 36. | %Documents and Settings%\All Users\Application Data\345d567\Quarantine Items | |
| 37. | %Documents and Settings%\All Users\Application Data\SADFIOPODIV\SAAKDUPV.cfg | |
| 38. | %Documents and Settings%\[UserName]\Application Data\Security Antivirus\cookies.sqlite | |
| 39. | %Documents and Settings%\[UserName]\Recent\CLSV.drv | |
| 40. | %Documents and Settings%\[UserName]\Recent\gid.drv | |
| 41. | %Documents and Settings%\[UserName]\Recent\tjd.drv | |
| 42. | %Program Files%\Mozilla Firefox\searchplugins\search.xml |