Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge
Online Security Research

Malware Information Consulting


Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge

This site is dedicated to Information and Research (Since 9/24/04) --- Henry L. Tillman (ITEC) Internet Technology Expert Consultant --- Phone: (773) 886-2446 --- Fax: (773) 224-7958 --- E-Mail: hltillman@hltillman.com                                    CLICK ON any SCROLLING PICTURE to ENLARGE IT!!                                                              CLICK ON any SCROLLING PICTURE to ENLARGE IT!!

FILE LISTINGS

Key Files


1. 498372730...

2. av2009.exe

3. Options

file creating Error Msg

4. xxakqifm.dll

Related to av2009?

=====================

Fake 
BSOD(Blue Screen of Death)
Fake BSOD
Blue Screen of Death

Click Here
to Enlarge
ROGUE ANTI-SPYWARE REMOVAL RESEARCH

Antivirus 2009

Characteristics:
1. Numerous Popups with false Virus, Spyware and Trojan detections.
2. Causes "Safe Mode" to malfunction.

New Features:
1. Causes random Display Resolution "Jumps"
2. Full screen "fake" Blue Screen of Death (BSOD)
3. Full screen "fake" Windows Startup Screen
(Black Background with moving blue bar)

-- These three "Recycle" in this order periodically. --

Removal Steps:
1. Turn off System --
Restart System -- About 2 or 3 seconds after the System Re-starts --
Click (several times) on the "F8" Key

2. If done correctly it will open
"Windows Advanced Options Menu"
-- Select "Safe Mode" --

3. Safe Mode may act a bit "quirky" but you should be able to move forward.
-- Click On "Administrator" -- Then Click -- Yes

(Unless you want to try "System Restore" first)


CLICK HERE to Continue...
FORMER ANALYSIS

Antivirus XP 2008


The primary (or Core) "File Name" is randomly changed (possibly during installation) so follow the primary link from the "Short Cut"

("Right Click" on "Short Cut") on the "Desktop" or in the "Start Menu" to determine the "Core File Name".

Core File Name (found during 08/05/08 Search) = rhcc4fj0ev65.exe

Path = C:\Program Files\rhcc4fj0ev65\

Files in Directory (rhcc4fj0ev65) = (msvcr71.dll, rhcc4fj0ev65.exe.local, MFC71ENU.DLL)

Target: rhcc4fj0ev65

Although the "Core File Name" has been "randomly generated" once created the name "sequence" is used consistently throughout the system.


CLICK HERE to Continue...
The Significance of
"SASSER"

The Future of
The Virus.WT
Internet Website
Tutorial

Device Driver
Tutorial
RootKitResearch.com

Blaster Worm
Archive
XML Tutor
for complete beginners

Web Presence Development
HLTillman.com


Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge Click Here to Enlarge -->
First you have a "Fake System scan" -- Next you have a "Fake" System Status Report -- Next you have a very Fake BSOD (BLUE SCREEN OF DEATH) -- Next you have a VERY FAKE MS Windows XP Bootup Screen -- Notice the mention of Antivirus 2009 RIGHT IN THE BOOTUP SCREEN!! and the rest are more "Bogus" INFECTIONS FOUND! notices.                                                              CLICK ON any SCROLLING PICTURE to ENLARGE IT!!                                                              This site is dedicated to Information and Research (Since 9/24/04) --- Henry L. Tillman (ITEC) Internet Technology Expert Consultant --- Phone: (773) 886-2446 --- Fax: (773) 224-7958 --- E-Mail: hltillman@hltillman.com                                                              CLICK ON any SCROLLING PICTURE to ENLARGE IT!!


CLICK HERE to Continue with
Antivirus 2009 Removal