Rogue

New Rogue-Total Defender

January 26, 2009

An interesting thing we noticed is that the Rogue did not attempt to scare us into purchasing it, rather telling us that the computer was secure after the scan. The Rogue authors are probably doing this to keep a high amount of Rogue installations active for the purposes of data theft or for hire services. [...]

Read the full article →

2009sites3.biz-AntiVirus 2009 Rogue Infector

January 13, 2009

Continually blog spammed by 2009sites3.biz I googled for hits. Bestantivirusdefence.com ICANN Registrar: BIZCN.COM, INC. Created: 2009-01-03 Expires: 2010-01-03 Updated: 2009-01-10 Name Server: NS1.EUROPEGIGABYTE.COM Name Server: NS2.EUROPEGIGABYTE.COM Name Server: NS3.EUROPEGIGABYTE.COM IP Address: 75.126.175.232 Domain Status: Registered And No Website Clicking ‘Cancel’ or trying to close by hitting the X won’t stop it. Of course that Microsoft [...]

Read the full article →

powerfulvirusremover2008 Rogue Security Program

November 27, 2008

Also named virusremover2008. From the EULA. Lack of viruses? You mean aside from what they install or the fake scan results. As to “uninstalling products”, the mind boggles. Legitimate security programs that detect this rogue? 32 infections on a clean machine, uh huh… “Virusremover2008 may have detected programs that may compromise your privacy or damage [...]

Read the full article →

Rogue Security Program email scam

October 23, 2008

Victims report a rogue named ‘Spybot 2009′ received in the form of email spam posing as an application upgrade. The scam is playing off the trademark name of the well known antispyware program, Spybot-S&D. Be warned you may also see websites offering the fake, rogue program Spybot 2009. Screenshots of the rogue at a blog [...]

Read the full article →

Rogues, privacy or security risks from Innovagest2000

September 30, 2008

The Sunbelt Blog reports a new rogue program, eAntivirusPro. eAntivirusPro is a new clone of Antivirus XP 2008 rogue security product. AntiMalware 2009 is yet another clone of Antivirus XP 2008 rogue security product. ekerberos is another rogue security product from Innovagest 2000. I checked out Innovagest2000.com, don’t try this at home. On the site [...]

Read the full article →

Maybe it’s magic

September 10, 2008

There are a lot of rogue (fake) security programs afflicting the Internet. When a rogue is new often the first victims are few, (that will change swiftly enough), and security companies look for samples so they can add the rogue to their software’s detections. Often at this early stage one will see places touting a [...]

Read the full article →

SmartAntivirus2009 Rogue Security Program

September 6, 2008

Another rogue spreading fast. If your computer has been infected please seek assistance with removal at one of the security forums, short list in right side column. Domains on the same IP. 1. Antispyware2008b.com 2. Antivir–2008.com 3. Antivirus2008proxp.com 4. Directnameservice2008.com 5. Mediatubeforme1.com 6. Onsafepro2008.com 7. Smart-antivirus-2009-buy.com 8. Smart-antivirus-2009.com 9. Smart-antivirus-2009buy.com 10. Smart-antivirus2009-buy.com 11. Smart-antivirus2009.com 12. [...]

Read the full article →

Rogue, MS AntiVirus via ifrance.com

September 5, 2008

I was taking a look at nine4teen.com with Fiddler running. Brief lowdown of the trail: nine4teen.com Host: ferlin.ifrance.com Host: js-perso.ifrance.com Host: web.ifrance.com Host: ad.ieurop.net Host: sfttraff.com Edit: Domain Name: SFTTRAFF.COM Registrar: ESTDOMAINS, INC. Dates: Created 01-sep-2008 Updated 01-sep-2008 Expires 01-sep-2009 srv1.e-statistic.com www.Nineteen.com Host: c39.statcounter.com Host: scanner.msscanneronline.com Then BAM… Sandi blogged about her frustration with ifrance.com [...]

Read the full article →

Adobe Flash ads launch Clipboard hijack attack by Rogues

August 19, 2008

Web-based attacks continue to affect Windows, Mac and Linux users by hijacking clipboards and spreading malicious links via Adobe Flash-based banner advertising on legitimate sites. One of the rogues involved, xp-vista-update.net, is rated by McAfee as ‘Green’. Previous Certifiedbug: xpsecuritycenter Rogue Security Program New domains of rogue Antivirus XP 2008, CNN Top 10 XP Antivirus: [...]

Read the full article →

AntiSpyCheck Rogue Security Program

June 11, 2008

The latest rogue installed through the Zlob Trojan. How to remove AntiSpyCheck If you have an infected computer and would feel more comfortable being assisted by a trained malware remover helper, please start a topic at one of the forums. Short but trusted list in the right hand column. Certifiedbug: Fake Security Programs

Read the full article →