If More People Had Protection, Scammers Behind Antivirus2009 Would Stop

Every month there are new rogue applications coming out, but Antivirus2009 is not new, it is just one more variant in a long line of dangerous parasites. There are as many as thirty known variants of Antivirus2009 and most likely there are many more to come. There are even other rogue applications designed to con people into installing them, just to get rid of the rogues in the Antivirus2009 family. Those wanting to read more information on Antivirus2009 and its variants, a full Wikipedia page have been setup detailing the dangers of this group of rogue application at http://en.wikipedia.org/wiki/Antivirus_2009.

AKA:

MS Antivirus
XP Antivirus
Vitae Antivirus
Windows Antivirus
Win Antivirus
Antivirus Pro
Antivirus Pro 2009
Antivirus 2007, 2008, 2009, 2010, and 360
Internet Antivirus Plus
System Antivirus
Spyware Guard 2008 and 2009
Spyware Protect 2009
Winweb Security 2008
System Security
Malware Defender 2009
Ultimate Antivirus2008
Vista Antivirus
General Antivirus
AntiSpywareMaster
Antispyware 2008
XP AntiSpyware 2008 and 2009
WinPCDefender
Antivirus XP Pro
Anti-Virus-1

Running Processes:
av2009.exe
Antivirus2009.exe
AV2009Install.exe
av2009[1].exe
AV2009Install_880405[1].exe
AV2009Install_880405[2].exe
c:\Program Files\Antivirus 2009\av2009.exe
c:\WINDOWS\system32\ieupdates.exe
Power-Antivirus-2009.exe
AV2009Install[1].exe
ieexplorer32.exe
%PROGRAMFILES%\Antivirus 2009\av2009.exe
AntivirusPro2009.exe
%PROGRAMFILES%\AV9\av2009.exe

Registry values:
Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\Antivirus 2009
HKEY_CURRENT_USER\Software\75319611769193918898704537500611
HKEY_CLASSES_ROOT\CLSID\{037C7B8A-151A-49E6-BAED-CC05FCB50328}
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “ieupdate”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “75319611769193918898704537500611”
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{037C7B8A-151A-49E6-BAED-CC05FCB50328}

Registered DLLs:
c:\WINDOWS\system32\winsrc.dll
%UserProfile%\Local Settings\Temporary Internet Files\Content.IE5\S96PZM7V\winsrc[1].dll

Associated Files:
%ProgramFiles%\Antivirus 2009
Antivirus 2009.lnk
Uninstall Antivirus 2009.lnk
c:\Program Files\Antivirus 2009
c:\WINDOWS\system32\scui.cpl
%UserProfile%\Desktop\Antivirus 2009.lnk
%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch\Antivirus
2009.lnk
%UserProfile%\Start Menu\Antivirus 2009
%UserProfile%\Start Menu\Antivirus 2009\Uninstall Antivirus 2009.lnk
%UserProfile%\Start Menu\Antivirus 2009\Antivirus 2009.lnk
%UserProfile%\Start Menu\Antivirus 2009
%ProgramFiles%\Power-Antivirus-2009
%ProgramFiles%\AV9
ieexplorer32.exe-removed_skip
%ProgramFiles%\AntivirusPro2009

Recommended Action:  Immediate Removal

Getting rid of Antivirus2009 as well as any of its variants can be frustrating matter to contend with. In most cases Antivirus2009 infiltrates a computer thorough a trojan. Once Antivirus2009 gets a foothold, removal can require extensive knowledge in registry editing and malware removal. To avoid potentially damaging your computer it is wise to enlist the help of an award winning malware removal and protection program. Remember though: not all malware removal and protection program are the same. Only Spyzooka offers a 100% guarantee to remove Antivirus2009 and all of its variants.

Download Free Scan
ZookaWare runs on Windows Vista, 7, 8 and 10. It has no ads, popups or bundled software and fully uninstalls by clicking Start > All Programs > select ZookaWare and click Uninstall.

One Response

  1. Jason Miller says:

    Antivirus2009 can be really irritating. I was infected with this virus and I was using Mozilla Firefox at that moment. I was changed my settings to block the site, but I was still received pop ups. A friend told me that it only wants my money and it is better to try a program like SpyZooka. I was amazed about how fast it worked and about the issues it found on my computer. Thanks for the help!

Leave a Reply

Your email address will not be published. Required fields are marked *

css.php