Antivirus XP 2008 fake antivirus application

September 10, 2008 | Uncategorized

Antivirus XP 2008 fake antivirus application. Stay away from Antivirus XP 2008 domains and products!

Antivirus XP 2008

Antivirus XP 2008

File scan.exe received on 09.10.2008 13:57:02 (CET)
Antivirus Version Last Update Result
AhnLab-V3 2008.9.6.0 2008.09.10 -
AntiVir 7.8.1.28 2008.09.10 -
Authentium 5.1.0.4 2008.09.10 -
Avast 4.8.1195.0 2008.09.10 -
AVG 8.0.0.161 2008.09.10 -
BitDefender 7.2 2008.09.10 Trojan.FakeAlert.AEB
CAT-QuickHeal 9.50 2008.09.10 Win32.Backdoor.Frauder.dk.4
ClamAV 0.93.1 2008.09.10 -
DrWeb 4.44.0.09170 2008.09.10 -
eSafe 7.0.17.0 2008.09.10 Suspicious File
eTrust-Vet 31.6.6082 2008.09.10 -
Ewido 4.0 2008.09.10 -
F-Prot 4.4.4.56 2008.09.09 -
F-Secure 8.0.14332.0 2008.09.10 Backdoor.Win32.Frauder.ee
Fortinet 3.112.0.0 2008.09.10 -
GData 19 2008.09.10 Backdoor.Win32.Frauder.ee
Ikarus T3.1.1.34.0 2008.09.10 -
K7AntiVirus 7.10.450 2008.09.10 -
Kaspersky 7.0.0.125 2008.09.10 Backdoor.Win32.Frauder.ee
McAfee 5380 2008.09.09 Downloader-ASH.gen.b
Microsoft 1.3903 2008.09.10 TrojanDownloader:Win32/Renos.AS
NOD32v2 3429 2008.09.09 -
Norman 5.80.02 2008.09.09 -
Panda 9.0.0.4 2008.09.09 -
PCTools 4.4.2.0 2008.09.09 -
Prevx1 V2 2008.09.10 -
Rising 20.61.22.00 2008.09.10 -
Sophos 4.33.0 2008.09.10 Mal/EncPk-EU
Sunbelt 3.1.1616.1 2008.09.09 -
Symantec 10 2008.09.10 -
TheHacker 6.3.0.9.077 2008.09.10 -
TrendMicro 8.700.0.1004 2008.09.10 -
VBA32 3.12.8.5 2008.09.10 -
ViRobot 2008.9.10.1371 2008.09.10 -
VirusBuster 4.5.11.0 2008.09.09 -
Webwasher-Gateway 6.6.2 2008.09.10 -
 
Additional information
File size: 50688 bytes
MD5…: ed9d026350b9a5ec573333b84931e602
SHA1..: b1288e49ea4e2e19149dd43d166eff5789909ffd
SHA256: 837392438aba583a2034d01eccf04806a3c63069772bf6687b66a348010a96d8
SHA512: 5a27b3c6ea9a24c1677b943d65e21438db729e3ef360e7fa2ee1cb853082263d
0e69411e305d4a5132ddb906ab5d3e4e10a5e216abc9d4b647cfc145ee69bed8
PEiD..: -
TrID..: File type identification
Win32 Executable Generic (38.4%)
Win32 Dynamic Link Library (generic) (34.2%)
Clipper DOS Executable (9.1%)
Generic Win/DOS Executable (9.0%)
DOS Executable Generic (9.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0×4034a7
timedatestamp…..: 0×48a5bf02 (Fri Aug 15 17:38:10 2008)
machinetype…….: 0×14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0×1000 0xabf2 0×7800 7.99 8a56bfbd91d99b6e5984e30e15c94340
.rdata 0xc000 0×3753 0×1800 7.97 694bcf8f12fc7a6897afe0c55b5508e8
.data 0×10000 0xe6c 0×200 7.58 0ecce8e95b59efb8eea2151cc2462085
.rsrc 0×11000 0xf000 0×3000 6.64 75bd1d1321c3b0cb2b60bc3a82972c9b

( 4 imports )
> kernel32.dll: CreatePipe, TerminateProcess, VirtualProtect
> shell32.dll: SHAppBarMessage, StrRChrIA, StrStrIA
> gdi32.dll: SetRelAbs, StretchBlt, SetICMMode, ResetDCW, UpdateColors, SaveDC, TextOutW, SetDIBColorTable
> wsock32.dll: bind, WSAStartup, listen

( 0 exports )

Antivirus XP 2008

Host: www.av-xp2008.com
IP: 218.106.90.227

Whois of IP 218.106.90.227 distibuting rogue antivirus Antivirus 2009 :

descr:        CNC Group CncNet
country:      CN
origin:       AS9929
mnt-by:       MAINT-CNCGROUP-RR
changed:      abuse@cnc-noc.net 20060329
source:       APNIC

person:       TECH GROUP CNC
address:      9/F, Building A, Corporate Square, No. 35 Financial Street,
address:      Xicheng District, Beijing 100032, P.R.China
country:      CN
phone:        +86-10-88093588
fax-no:       +86-10-88091442
e-mail:       tech-group@china-netcom.com

 

Other sites of IP 218.106.90.227 selling rogue antivirus Antivirus 2009 :

1.  Antivirusxp-2008.net 
2.  Antivirusxp2008.net 
3.  Axpdefender08.com 
4.  Axpfixer.com 
5.  Easyspywarecleaner.com 
6.  Ekerberos.com 
7.  Infestop.com 
8.  Malwareprotector08.com 
9.  Spy-rid.com 
10.  Wap2007.com 
11.  Xusony.com 
12.  Youpornztube.biz 
13.  Youpornztube.net 
14.  Youpornztube.org 
15.  Av-xp08.com 
16.  Av-xp08.net 
17.  Av-xp2008.com 

Host: secure.innovagest2000sl.com
IP: 207.226.175.126

Whois of IP 207.226.175.126 selling rogue antivirus Antivirus 2009 :

OrgName: Beyond The Network America, Inc.
OrgID: BNA-42
Address: 450 Springpark PL
Address: Suite 100
City: Herdon
StateProv: VA
PostalCode: 20170
Country: US

 
Antivirus XP 2008

Antivirus XP 2008

Related Posts :

CleanThe.Net Recommends - Kaspersky Antivirus. Remove Virus Now!

Kaspersky Antivirus

Post a Comment