Need help? Ask the community or hire an expert.
Go to Avira Answers
Virus:Adware/InstallRex.duh
Date discovered:19/01/2014
Type:Adware
In the wild:No
Reported Infections:Low to medium
Distribution Potential:Low
Damage Potential:Low
File size:?320.880 Bytes
VDF version:7.11.125.186 - Sunday, January 19, 2014
IVDF version:7.11.125.186 - Sunday, January 19, 2014

 General Method of propagation:
   • No own spreading routine


Aliases:
   •  Kaspersky: Trojan.Win32.AntiFW.b
   •  Eset: Win32/InstalleRex.M
     DrWeb: Adware.Downware.2108


Platforms / OS:
   • Windows XP
   • Windows 2003
    Windows Vista
    Windows Server 2008
    Windows 7

 Files  It creates the following directories:
   • %ALLUSERSPROFILE%\InstallMate
   • %ALLUSERSPROFILE%\InstallMate\{855B95D0-278F-4290-A07B-6FAD5EB8B726}
   • %ALLUSERSPROFILE%\InstallMate\561F5455
   • %ALLUSERSPROFILE%\SafeSoft
   • %ALLUSERSPROFILE%\SafeSoft\SafeApp

 File details Programming language:
The malware program was written in MS Visual C++.

Description inserted by Oscar Anduiza on Wednesday, February 26, 2014
Description updated by Andrei Ivanes on Wednesday, February 26, 2014

Back . . . .