Infesting you with Virus News
 

News

Contributed by: Jovita Baltrusaityte
Date: January 27, 2010
Jovita Baltrusaityte
2
Vote
0

The Final Analysis: The Installation File of APcSecure

 

4apcsecure.jpg

Last but not least, I would like to point out several significant facts about APcSecure, the rogueware from the Winisoft family. Let's try to discover how APcSecure affects your computer after breaking into it. Besides, is your antivirus software able to detect this threat on your machine?

As I have already indicated in my previous articles on APcSecure, the rogueware is usually installed without your notice. I don't think that there are many people who would be willing to damage their computers. Of course, sometimes people are too trustful and many things can happen.

However, let's get back to the computer after APcSecure is installed on it. Don't think that the rogueware only scans and displays warnings on your PC. In fact, the fake software affects your computer that you constantly face these problems:

The performance of your computer becomes slower than usually;
• Home page of your browser is changed;
• Your antivirus program is constantly blocked in order not to detect this rogueware;;
• Commercial advertisements and annoying pop-ups are displayed as you don't even expect that.

A question arises: are there any antivirus programs which are able to detect and remove this rogueware? Can we trust our antivirus vendors? The answer is positive. After sending setup.exe file of APcSecure (setup.exe file size is 123392 bytes and it comes with the MD5 signature e4ef9d435747b38997d55a0b89dd394d), Virus Total - an online service providing free malware scanning for individual files - detected that 33 out of 41 antivirus vendors detected the installation file as malicious and potentially harmful. Have a look at the following table that provides all the alias names of the analyzed threat:

Anti-virus Vendor Alias Name
a-squared Trojan-Dropper.Win32.TDSS!IK
AhnLab-V3 Dropper/Alureon.123392
AntiVir TR/Drop.TDss.H
Avast Win32:Rootkit-gen
CAT-QuickHeal TrojanDropper.TDSS.h
Comodo TrojWare.Win32.Trojan.Agent.Gen
DrWeb Trojan.MulDrop.59180
eSafe Win32.Horse
F-Secure Trojan:W32/Agent.NDK
Fortinet W32/TDSS.H!tr
GData Win32:Rootkit-gen
Ikarus Trojan-Dropper.Win32.TDSS
Jiangmin TrojanDropper.TDSS.e
K7AntiVirus Trojan-Dropper.Win32.TDSS.h
Kaspersky Trojan-Dropper.Win32.TDSS.h
McAfee DNSChanger!cy
McAfee+Artemis DNSChanger!cy
McAfee-GW-Edition Heuristic.LooksLike.Trojan.Drop.TDss.B
Microsoft Trojan:Win32/Alureon.CO
NOD32 Win32/TrojanDownloader.Adload.NFW
Norman         W32/DNSChanger.GQIF
Panda Trj/CI.A
PCTools Trojan.Generic
Prevx Medium Risk Malware
Rising Trojan.Win32.Generic.51F81627
Sophos Mal/Generic-A
Sunbelt Rogues.Win32.FakeSmoke
Symantec
Trojan Horse
TheHacker Trojan/Dropper.TDSS.h
TrendMicro TROJ_DROPPER.OPK
VBA32 Trojan-Dropper.Win32.TDSS.h
ViRobot Dropper.Tdss.75888
VirusBuster Trojan.DR.TDSS.QGB

Table 1. APcSecure Alias Names

Remember that APcSecure will never be able to help you in removing any threats from your computer. Don't ever install it on your PC. However, if the infection has secretly hacked into your computer, follow these instructions and remove the rogueware as soon as possible.

User Comments

Name:
Email:
Website:
Comment:
Please type 5-digit security code below:
Captcha image for spam protection

Home > Latest Rogue AntiSpyware > The Final Analysis: The Installation File of APcSecure