Home Malware Programs Rogue Anti-Spyware Programs Enterprise Suite

Enterprise Suite

Posted: November 13, 2009

Threat Metric

Threat Level: 10/10
Infected PCs: 14
First Seen: December 1, 2009
Last Seen: June 12, 2023
OS(es) Affected: Windows

ScreenshotEnterprise Suite is a Rogue Anti-Spyware Program that is downloaded via Trojans that come from fake online scanners, bogus websites or bundled with other malicious software. Once Enterprise Suite is installed, it will download Enterprise Suite files and display fake security alerts to scare the PC user into thinking that the computer is infected with spyware, worms and other malware. The rogue program will then imitate a system scan that will produce a false report of threats. The PC user will be convinced to pay for a full version of the program to remove the mentioned threats. Do not purchase this bogus application. It is recommended that you have Enterprise Suite removed from your PC immediately.

ScreenshotScreenshotScreenshot

Aliases

Trj/Downloader.MDW [Panda]Trojan.Backdoor.Small.ZX.17 [McAfee-GW-Edition]Backdoor.Win32.Small.zx [Kaspersky]Trojan-Downloader.Win32.Cutwail [Ikarus]W32/FakeAV.AX!tr.bdr [Fortinet]Win32/EnterpriseSuite.B [eTrust-Vet]Heur.Suspicious [Comodo]Backdoor.Small.zx [CAT-QuickHeal]Trojan.Generic.2710561 [BitDefender]Generic15.BIUM [AVG]Backdoor/Win32.Small [Antiy-AVL]BDS/Small.ZX.17 [AntiVir]Win-Trojan/Downloader.1925120 [AhnLab-V3]Trojan-Downloader.Win32.Cutwail!IK [a-squared]Trj/CI.A [Panda]
More aliases (43)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



WE53e0.exe File name: WE53e0.exe
Size: 2.06 MB (2066432 bytes)
MD5: f32a2f8dd8e8a46619c1f39e9d4f6cb0
Detection count: 86
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WE4869.exe File name: WE4869.exe
Size: 1.94 MB (1942528 bytes)
MD5: c459883b001fd6cc52590876162d20d3
Detection count: 85
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WE841b.exe File name: WE841b.exe
Size: 1.94 MB (1942528 bytes)
MD5: e2c7a0274712a3e49cd5fdccf5d921be
Detection count: 84
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WE2579.exe File name: WE2579.exe
Size: 2.08 MB (2083840 bytes)
MD5: 4bd2737f3e8602ad4ec65e4bfe92f10e
Detection count: 83
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WE7ae3.exe File name: WE7ae3.exe
Size: 1.93 MB (1935872 bytes)
MD5: 5ff3aa47582aa543982e3a1c9e124491
Detection count: 54
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WE1e1b.exe File name: WE1e1b.exe
Size: 1.92 MB (1925120 bytes)
MD5: 096432353978dc3e6ccad2fd32262480
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WEcb07.exe File name: WEcb07.exe
Size: 1.92 MB (1925632 bytes)
MD5: 725e9cda0727df240074024d9e53a5ac
Detection count: 34
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WE40a3.exe File name: WE40a3.exe
Size: 1.93 MB (1933824 bytes)
MD5: 8346df48736518884ea980d7b31a0b90
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WEc3b5.exe File name: WEc3b5.exe
Size: 1.92 MB (1925120 bytes)
MD5: fe54afa4b573db3243e7347af4fd90b2
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
WE5319.exe File name: WE5319.exe
Size: 1.92 MB (1925120 bytes)
MD5: aa5bd0b3113e0b35a9c091c65eae9458
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009

Registry Modifications

The following newly produced Registry Values are:

File name without pathEnterprise Suite.lnk

Related Posts

2 Comments

  • Annette says:

    this Enterprise Suite from supposedly vircure-mypcnow popped up on my screen and said I had damage to my computer but I had just cleaned and tuned up my computer yesterday so I checked with my own system and nothing was wrong. i thought the site looked funny, kinda like fake money or somthing, just not right. I am so glad I didn't do anything before I checked it out. I think this should be more public. It amazes me that things are this way in the world and I think it SUX!! Any way thank you for this warning

  • eighprill says:

    I cannot find "WinESuite.exe" after clicking Run under Current Version.

    And beforwe that I can't find the WinESuite.exe for me to remove it.

Loading...