Threat Database Browser Hijackers Www2.novironyourpc.net

Www2.novironyourpc.net

Www2.novironyourpc.net is involved in the malvertising of the rogue security program Live PC Care. Www2.novironyourpc.net is distributed by Trojans that can enter systems via browser vulnerabilities or malicious downloads. The Trojans also modify system settings to ensure that a victim's browser is frequently redirected to Www2.novironyourpc.net. Www2.novironyourpc.net will then disguise itself as a legitimate online system scan that automatically reports several infections on a victim's machine. Following the security reports and alerts, the victim will be advised to purchase the "licensed version" of Live PC Care in order to remove the detected computer parasites. Www2.novironyourpc.net is not to be trusted and Live PC Care is not worth wasting your money on.

File System Details

Www2.novironyourpc.net may create the following file(s):
# File Name Detections
1. %Documents and Settings%\All Users\Application Data\117fc\sqlite3.dll
2. %UserProfile%\Recent\DBOLE.sys
3. %UserProfile%\Recent\FW.dll
4. %UserProfile%\Recent\runddl.dll
5. %Documents and Settings%\All Users\Application Data\117fc\mozcrt19.dll
6. %UserProfile%\Recent\DBOLE.exe
7. %UserProfile%\Recent\fan.exe
8. %UserProfile%\Recent\ppal.sys
9. %Documents and Settings%\All Users\Application Data\117fc\LP339.exe
10. %UserProfile%\Recent\CLSV.sys
11. %UserProfile%\Recent\exec.dll
12. %UserProfile%\Recent\ppal.dll
13. %UserProfile%\Recent\SM.dll
14. %Documents and Settings%\All Users\Application Data\117fc\8233.mof
15. %Documents and Settings%\All Users\Application Data\LPCGSys\lpcg.cfg
16. %UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Live PC Care.lnk
17. %UserProfile%\Recent\hymt.drv
18. %UserProfile%\Start Menu\Live PC Care.lnk
19. %Documents and Settings%\All Users\Application Data\117fc\LPCG.ico
20. %Documents and Settings%\All Users\Application Data\LPCGSys
21. %UserProfile%\Application Data\Live PC Care\cookies.sqlite
22. %UserProfile%\Recent\cb.drv
23. %UserProfile%\Recent\PE.tmp
24. %Program Files%\Mozilla Firefox\searchplugins\search.xml
25. %Documents and Settings%\All Users\Application Data\117fc
26. %Documents and Settings%\All Users\Application Data\117fc\LPCGSys\vd952342.bd
27. %UserProfile%\Application Data\Live PC Care
28. %UserProfile%\Desktop\Live PC Care.lnk
29. %UserProfile%\Recent\kernel32.drv
30. %UserProfile%\Start Menu\Programs\Live PC Care.lnk

Registry Details

Www2.novironyourpc.net may create the following registry entry or registry entries:
HKEY_CLASSES_ROOT\xp_5ea56.DocHostUIHandler
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform "[xSP_2:117fc3395e69e29f71abba93a68c4181_7]"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "CheckExeSignatures" = "no"
HKEY_CLASSES_ROOT\CLSID\{3F2BBC05-40DF-11D2-9455-00104BC936FF}
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "RunInvalidSignatures" = "1"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "Live PC Care"
HKEY_CURRENT_USER\Software\3
HKEY_CURRENT_USER\Software\Classes\Software\Microsoft\Internet Explorer\SearchScopes "URL" = "http://search-gala.com/?&uid=7&q={searchTerms}"
HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes "URL" = "http://search-gala.com/?&uid=7&q={searchTerms}"

Trending

Most Viewed

Loading...