Home Malware Programs Rogue Anti-Virus Programs AnVi

AnVi

Posted: August 4, 2010

Threat Metric

Ranking: 16,669
Threat Level: 10/10
Infected PCs: 888
First Seen: August 6, 2010
Last Seen: August 1, 2023
OS(es) Affected: Windows

ScreenshotAnVi is a rogue anti-virus program that reports false threats and displays fake security alerts on your PC. AnVi does this to convince you that your computer is infected with malware. This fake program is promoted and installed through the use of Trojans and often comes bundled with other malicious software. AnVi is part of a blatant scam used to con you into paying for removal of infections which don't exist. Remove AnVi and all associated threats using an updated anti-virus program.

ScreenshotScreenshotScreenshotScreenshot

Aliases

Mal/Generic-L [Sophos]probably a variant of Win32/Adware.CoreguardAntivi [NOD32]Trojan:Win32/Neop [Microsoft]Win32.TRDldr.FraudLo [eSafe]TrojanDownloader.FraudLoad.xe [CAT-QuickHeal]Trojan/Win32.FraudLoad.gen [Antiy-AVL]3399764 'Trojan-Downloader.Win32.FraudLoad [Ikarus]CoreGuardAntivirus2009 [Symantec]Adware/SecurityCenter [Panda]Generic FakeAlert.b [McAfee]Trojan-Downloader.Win32.FraudLoad.xerf [Kaspersky]Trojan-Downloader.Win32.FraudLoad [Ikarus]Heur.Suspicious [Comodo]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SYSTEMDRIVE%\Users\<username>\Downloads\Nueva carpeta\MalwareDatabase-master\rogues\Endermanch@Antivirus.exe File name: Endermanch@Antivirus.exe
Size: 2.06 MB (2066944 bytes)
MD5: c7e9746b1b039b8bd1106bca3038c38f
Detection count: 115
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\Downloads\Nueva carpeta\MalwareDatabase-master\rogues\Endermanch@Antivirus.exe
Group: Malware file
Last Updated: August 1, 2023
%APPDATA%\AnVi\avt.exe File name: avt.exe
Size: 2.06 MB (2066944 bytes)
MD5: 0946f37b8305732b085a53c9413bfceb
Detection count: 105
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\AnVi
Group: Malware file
Last Updated: September 16, 2010
%APPDATA%\AnVi\avt.exe File name: avt.exe
Size: 2.06 MB (2066944 bytes)
MD5: 45ccba4e5348a33054b715f9308d26ac
Detection count: 75
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\AnVi
Group: Malware file
Last Updated: October 25, 2010
%APPDATA%\AnVi\avt.exe File name: avt.exe
Size: 2.06 MB (2066944 bytes)
MD5: 0f412fdfd9c8233b6ea6e5be95683bd8
Detection count: 44
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\AnVi
Group: Malware file
Last Updated: September 16, 2010
%PROGRAMFILES%\AnVi\avt.exe File name: avt.exe
Size: 2.06 MB (2066944 bytes)
MD5: 7f66cb17feccbc6eaefca17c7cfaa066
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\AnVi
Group: Malware file
Last Updated: September 16, 2010
%APPDATA%\AnVi\avt.exe File name: avt.exe
Size: 2.06 MB (2066944 bytes)
MD5: dd373639a20fb6145f47b69d1cc87c51
Detection count: 35
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\AnVi
Group: Malware file
Last Updated: October 25, 2010
%APPDATA%\AnVi\avt.exe File name: avt.exe
Size: 2.06 MB (2066944 bytes)
MD5: 9e109138c72af408a70636c5c367473d
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\AnVi
Group: Malware file
Last Updated: September 16, 2010
%PROGRAMFILES%\AnVi\avt.exe File name: avt.exe
Size: 2.06 MB (2066944 bytes)
MD5: 804038d79e42868b56f1e173c484e463
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\AnVi
Group: Malware file
Last Updated: September 16, 2010
%ProgramFiles%\AnVi\avthook.dll File name: avthook.dll
Size: 8.7 KB (8704 bytes)
MD5: 82dcde33d5c7f8ce87c45a35374a042b
Detection count: 16
File type: Dynamic link library
Mime Type: unknown/dll
Path: %ProgramFiles%\AnVi
Group: Malware file
Last Updated: August 6, 2010

Additional Information

The following directories were created:
%ProgramFiles%\AnVi

Related Posts

Loading...