Home Malware Programs Rogue Anti-Spyware Programs PTools

PTools

Posted: January 29, 2010

PTools is a rogue anti-spyware program which distorts the Windows Registry and creates harmful files once it becomes active in the system. PTools also deteriorates PC performance and stunts the system's processing potential. PTools exhausts the system so that other infections can easily enter. PTools will produce a fake system scan report which is used to scare the user into thinking the PC is infected with malware. Do not fall for this, it is merely a ploy to get hapless users to buy PTools, which is in fact useless. Remove PTools without delay using reliable anti-spyware software.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Documents and Settings%\[UserName]\Application Data\PC\agent.exe
    2 %Documents and Settings%\[UserName]\Application Data\PC\faq\guide.html
    3 %Documents and Settings%\[UserName]\Application Data\PC\faq\images\gimg1.jpg
    4 %Documents and Settings%\[UserName]\Application Data\PC\faq\images\gimg2.jpg
    5 %Documents and Settings%\[UserName]\Application Data\PC\faq\images\gimg3.jpg

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon "Shell" = "pc.exe"HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "agent.exe"HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}PTools
Loading...