Emsisoft Malware-Info
Name: Adware.Win32.SecurityAntivirus
Risklevel: Elevated Risk
Description:
Security Antivirus is a rogue security software that show false warning messages and show misleading scan results. It will start automatically when your computer starts. The installer will also create numerous harmless files on your computer, usually at Recent folder, that are used to impersonate malware files. Once the program is running it will scan your computer and then display these files as infections, but will not allow you to remove them until you purchase the program.
Removal instructions for Adware SecurityAntivirus:
To delete this malware infection, buy Emsisoft Anti-Malware.
Guaranteed removal of Adware SecurityAntivirus.
Run a full scan on all drives and move all detected items to the quarantine.
More details about this danger:
Installation: Installed through EXE
Process: %random%.exe
Screenshots:
Used folders:
- C:\Program Files\Mozilla Firefox\searchplugins\
- C:\WINDOWS\system32\
- C:\WINDOWS\system32\drivers\etc\
- C:\Documents and Settings\All Users\Application Data\58969\
- C:\Documents and Settings\All Users\Application Data\SAPZUTPQV\
- C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\
- C:\Documents and Settings\[USER]\Application Data\Security Antivirus\
- C:\Documents and Settings\[USER]\Desktop\
- C:\Documents and Settings\[USER]\Desktop\BackUp\
- C:\Documents and Settings\[USER]\Desktop\SAVSys\
- C:\Documents and Settings\[USER]\Local Settings\Temp\
- C:\Documents and Settings\[USER]\Recent\
- C:\Documents and Settings\[USER]\Start Menu\
- C:\Documents and Settings\[USER]\Start Menu\Programs\
Used files:
- C:\Program Files\Mozilla Firefox\searchplugins\search.xml
[1205 Bytes] XML File - C:\WINDOWS\system32\COMMAND.COM
[50620 Bytes] COM File - C:\WINDOWS\system32\DOSX.EXE
[53840 Bytes] EXE File - C:\WINDOWS\system32\HIMEM.SYS
[4768 Bytes] SYS File - C:\WINDOWS\system32\MSCDEXNT.EXE
[817 Bytes] EXE File - C:\WINDOWS\system32\REDIR.EXE
[3338 Bytes] EXE File - C:\WINDOWS\system32\drivers\etc\hosts
[2737 Bytes] File - C:\Documents and Settings\All Users\Application Data\58969\SAf4c.exe
[2595328 Bytes] EXE File - C:\Documents and Settings\All Users\Application Data\58969\SAV.ico
[4286 Bytes] ICO File - C:\Documents and Settings\All Users\Application Data\SAPZUTPQV\SAJPV.cfg
[18572 Bytes] CFG File - C:\Documents and Settings\[USER]\Application Data\Microsoft\Internet Explorer\Quick Launch\Security Antivirus.lnk
[1758 Bytes] LNK File - C:\Documents and Settings\[USER]\Application Data\Security Antivirus\cookies.sqlite
[4096 Bytes] SQLITE File - C:\Documents and Settings\[USER]\Application Data\Security Antivirus\Instructions.ini
[1063 Bytes] INI File - C:\Documents and Settings\[USER]\Desktop\8645.mof
[334 Bytes] MOF File - C:\Documents and Settings\[USER]\Desktop\mozcrt19.dll
[722392 Bytes] DLL File - C:\Documents and Settings\[USER]\Desktop\Security Antivirus.lnk
[1740 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\sqlite3.dll
[457688 Bytes] DLL File - C:\Documents and Settings\[USER]\Desktop\BackUp\HyperSnap-DX.lnk
[650 Bytes] LNK File - C:\Documents and Settings\[USER]\Desktop\SAVSys\vd952342.bd
[12654 Bytes] BD File - C:\Documents and Settings\[USER]\Local Settings\Temp\packupdate_build7_195.exe
[250880 Bytes] EXE File - C:\Documents and Settings\[USER]\Recent\ANTIGEN.tmp
[43 Bytes] TMP File - C:\Documents and Settings\[USER]\Recent\CLSV.drv
[69 Bytes] DRV File - C:\Documents and Settings\[USER]\Recent\DBOLE.drv
[61 Bytes] DRV File - C:\Documents and Settings\[USER]\Recent\delfile.tmp
[22 Bytes] TMP File - C:\Documents and Settings\[USER]\Recent\eb.sys
[12 Bytes] SYS File - C:\Documents and Settings\[USER]\Recent\eb.tmp
[16 Bytes] TMP File - C:\Documents and Settings\[USER]\Recent\exec.exe
[1 Bytes] EXE File - C:\Documents and Settings\[USER]\Recent\exec.tmp
[16 Bytes] TMP File - C:\Documents and Settings\[USER]\Recent\FS.drv
[14 Bytes] DRV File - C:\Documents and Settings\[USER]\Recent\FW.tmp
[3 Bytes] TMP File - C:\Documents and Settings\[USER]\Recent\pal.tmp
[30 Bytes] TMP File - C:\Documents and Settings\[USER]\Recent\ppal.drv
[59 Bytes] DRV File - C:\Documents and Settings\[USER]\Recent\runddl.exe
[18 Bytes] EXE File - C:\Documents and Settings\[USER]\Recent\SM.sys
[57 Bytes] SYS File - C:\Documents and Settings\[USER]\Recent\snl2w.exe
[13 Bytes] EXE File - C:\Documents and Settings\[USER]\Recent\std.dll
[16 Bytes] DLL File - C:\Documents and Settings\[USER]\Recent\tjd.dll
[35 Bytes] DLL File - C:\Documents and Settings\[USER]\Start Menu\Security Antivirus.lnk
[1740 Bytes] LNK File - C:\Documents and Settings\[USER]\Start Menu\Programs\Security Antivirus.lnk
[1746 Bytes] LNK File
Additional information might be found here:
Search
at Google for
Adware SecurityAntivirus
Search at Bing for
Adware SecurityAntivirus
Search
at Yahoo for
Adware SecurityAntivirus
How can I protect myself from Adware SecurityAntivirus?
Important!
You essentially need an antivirus product, that is not only able to clean infections, but also protect your PC permanently from new dangers.
This is the only way to prevent data loss and unnecessary hassle and costs of new installations of your operating system.
Take your chance and buy the multiple awarded protection software Emsisoft Anti-Malware today!
Only $40 for the security of your computer.
Buy Emsisoft Anti-Malware online:
Trust only on the best protection software!
Spring Offer!
Don't miss this: To your bought 1-year license of Emsisoft Anti-Malware or Emsisoft Internet Security Pack or higher you can now get
a free license of the CyberGhost Anonymizer for free.
Your advantage: Surf anonymously and visit websites that are restricted in your country.
Only a few days left! Order here























