Associated Malware Groups
The filename is associated with the malware groups:
- System Back Door
- Cloaked Malware
- Malicious Software
File Behavior
AVGVSRD.EXE has been seen to perform the following behavior:
- Creates system tray popups, messages, errors and security warnings
- Uses DNS to retrieve the IP address for web sites
- Uses your PC to connect to Chat rooms
- Found on infected systems and resists interrogation by security products
AVGVSRD.EXE has been the subject of the following behavior:
- Executed as a Process
- Copied to multiple locations on the system
- Registered as a Dynamic Link Library File
- Created as a new Background Service on the machine
Country Of Origin
The filename AVGVSRD.EXE was first seen on Sep 10 2009 in the following geographical regions of the Prevx community:
- Uruguay on Sep 10 2009
- Mexico on Sep 11 2009
- Chile on Sep 24 2009
File Name Aliases
AVGVSRD.EXE can also use the following file names:
- GET[n].COM
- AVGVSPC.EXE
- AVGVCNT.EXE
- AVGVMGR.EXE
- AVMGSEC.EXE
- AVGPTC.EXE
- AVGVSM.EXE
- AVGVMN.EXE
- AVRUNCM.EXE
- AVRMNTC.EXE
- AVGVCMR.EXE
- AVGVSCN.EXE
- AVSYSDB.EXE
- DVC-IMAGEN005.JPG_WWW.MYFILEHD (n).COM
- DVC-IMAGEN005.JPG_WWW.MYFILEHD.COM
- MVC-IMAGEN02.JPEG_WWW.MYFILEHD.COM
- AVGVSCA.EXE
- AVSCPD.EXE
- AVGVRND.EXE
- DVC-IMAGEN005.JPG_WWW.MYFILEHD[n].COM
- MVC-IMAGEN02.JPEG_WWW.MYFILEHD.EXE
- AVSCPA.EXE
- AVGVSCX.EXE
- AVGVSCD.EXE
- DVC-IMAGEN011.JPG_WWW.MYFILEHD.COM
- MVC-IMAGEN0022.JPEG_WWW.FLYPICTURES.COM
- DVC-IMAGEN011.JPG_WWW.FLYPICTURES.COM
- AVGHSTA.EXE
- 53605226.CO
- 14845395.CO
- 87059761.EXE
Filesizes
The following file size has been seen:
- 87,040 bytes
- 85,504 bytes
- 84,992 bytes
- 86,016 bytes
- 68,608 bytes
File Type
The filename AVGVSRD.EXE refers to many versions of an executable program.
File Activity
One or more files with the name AVGVSRD.EXE creates, deletes, copies or moves the following files and folders:
- Creates c:\windows\system32\drivers\etc\host
Network Activity
One or more files with the name AVGVSRD.EXE performs the following network events:
- DNS Lookup203.26.199.113 zapniki.srv-adobe.info
Website Activity
One or more files with the name AVGVSRD.EXE interacts with the following web sites and pages. Web addresses have been deliberately modified to prevent unintentional use.
- TCP:203.26.199.113:6501 Port:14
PCMag.com Editors' Choice Award Logo is a trademark of Ziff Davis Publishing Holdings Inc. Used under license.