Home > Threat descriptions >

Rogue:W32/WinAntiVirus

Classification

Category: Malware

Type: Rogue

Aliases: Rogue:W32/WinAntiVirus, Rogue:W32/WinAntiVirus, FraudTool.Win32.WinAntiVirus, WinFixer (Symantec) Program:Win32/Winfixer (Microsoft)

Summary


Dishonest antivirus software which tricks users into buying or installing it, usually by infecting a user's computer, or by pretending the computer is infected.

Removal


Automatic action

Based on the settings of your F-Secure security product, it will either automatically delete, quarantine or rename the detected program or file, or ask you for a desired action.

Knowledge Base

Find the latest advice in our Community Knowledge Base.

About the product

See the manual for your F-Secure product on the Help Center.

Contact Support

Chat with or call an expert for help.

Submit a sample

Submit a file or URL for further analysis.

Technical Details


Winantivirus is an rogue antivirus program that pretends to scan the system, and then displays false or exaggerated results. Here is a sample screenshot of program while it performs a system scan:

This rogueware is closely related to the XPAntivirus rogueware family.Other names used by this rogueware are :

  • WinAntiVirus2008
  • WinAntiVirusPro
  • WinAntiVirus Pro 2007
  • Vista Antivirus 2008