URL: threatnuker.com
File Name: ThreatNukerSetup.exe
MD5: 185C34FA0867AF926EEB665969D575E2
IP: 72.44.67.7
Virus Total Detection Result: 1/38 (2.63%)
Thursday, February 26, 2009
Rogue Application: ThreatNuker
Posted by SASI at 10:27 PM 0 comments
Wednesday, February 25, 2009
Rogue Application: MalwareDoc +
URL: h__p://malware-doc.com/
File Name: MDSetup.exe
MD5: AF5F63CDAED1E619B65D7BF506E40E3A
IP: 193.138.172.5
Virus Total Detection Result: 10/39 (25.64%)
Posted by SASI at 11:06 PM 0 comments
Rogue Application: XP Polic Antivirus
URL: h__p://xp-police-09.com/
File Name: install.exe
MD5: 6205884B924784BDA4ABF9C641094C89
IP: 213.163.65.10
Virus Total Detection Result: 11/39 (28.21%)
Posted by SASI at 11:03 PM 0 comments
Monday, February 16, 2009
Rogue Application: Privacy Protection Suite
URL:h__p://www.ppsuite.com/Downloads.aspx
File Name:PPSuiteSetup.exe
MD5: 4d1a18d5655c5b2e6480bb7088faa522
IP: 216.93.176.10
Description: Privacy Protection Suite, also known as PPSuite, is a rogue anti-spyware program usually installed by the Trojan Vundo. Once infected by Privacy Protection Suite, you'll receive numerous fake security alerts and system scan results stating that your computer is infected with spyware. To remove the supposed spyware infections, Privacy Protection Suite will then urge you to purchase Privacy Protection Suite's full program from its website (Ppsuite.com) for $79.95 or $49.95.
Virus Total Result: 3/39 (7.69%)(Win32/Adware.PrivacyGuard)
Posted by SASI at 12:52 AM 0 comments
Sunday, February 15, 2009
Rogue Application: SmitFraudFixTool
URL: h__p://smitfraudfixtool.com
File Name: setupxv.exe
MD5: E958D32A8A02D6175B2287D1887DB24B
IP: 75.126.210.82
Description: SmitfraudFIXTool is more fake anti-spyware software. SmitfraudFIXTool has nothing to do with reputable anti-spyware program SmitFraudFix– except SmitfraudFIXTool’s trying to ride off SmitFraudFix’s good name. Once SmitfraudFIXTool is in your system, SmitfraudFIXTool tries to trick you into buying the “full” version of SmitfraudFIXTool with phony system alerts, and by noting harmless files as dangerous.
Virus Total Result:9/39 (23.08%)
Posted by SASI at 8:53 PM 0 comments
Rogue Application: RegistryCleaner Pro 2009
URL: h__p://clean-windows-xp.com/
File Name:Setup.exe
MD5: 84b39dee275c11a55eb1a0afc8f3e87e
IP: 64.202.189.170
Virus Total Result: 1/39 (2.56%) - Trojan-Downloader/W32.Zlob.816348
Posted by SASI at 8:52 PM 0 comments
Saturday, February 14, 2009
Rogue Application: Eantispy
URL: h__p://www.eantispy.com/download/eantispyinstaller.exe
File Name: eantispyinstaller.exe
MD5: F3B1700123F2D685602AF047C3269D56
IP: 208.122.223.133
Virus Total Result: 7/39(detection rate by various antivirus engin)
Posted by SASI at 1:53 AM 1 comments
Friday, February 13, 2009
Rogue Application: RegCLEAN 2009 Edition
URL: h__p://www.regclean.com/download.php
File Name: setupxv.exe
MD5: 52761D570F6D3694660395284D1108E3
IP: 75.125.61.162
Virus Total Result:8/39 (20.51%)
Posted by SASI at 11:28 PM 0 comments
Rogue Application: Errordoctor
URL: h__p://www.errordoctor.com/index.php?hop=pctunetips
File Name: ErrorDoctorSetup.exe
MD5: 1C7232DF9B6D0FAF86347F3883BCD612
IP: 216.138.208.129
Virus Total Result:6/39 (15.38%)
Posted by SASI at 11:08 PM 0 comments
Rogue Application: Errorkiller
URL: h__p://www.errorkiller.com/download2.html
File Name: errorkiller setupxv.exe
MD5: b1d67886fa2f4ba5f82d57c9e542782d
IP: 75.125.202.106
Virus Total Result:4/39 (10.26%)
Posted by SASI at 11:07 PM 0 comments
Rogue Application: Adwarealert
URL: h__p://www.adwarealert.com/download.php
File Name: setupxv.exe
MD5:F85684CD72CBD96FE69839D5AF571876
IP: 75.125.200.226
Virus Total Result: 4/39 (10.26%)
Posted by SASI at 11:07 PM 0 comments
Wednesday, February 11, 2009
Rogue Application: Win Antivirus Vista/XP
URL: h__p://asc-antispyware.info/page.php?page=download
File Name: AntiSpyware_Installer.exe
MD5: 2BD73BE32DEB8379CDEA366C993DBF69
IP: 81.177.22.175
Description: ASC-AntiSpyware is another fake antivirus program.It may hijack your web browser and insist on purchasing or downloading suspicious programs. It will show false positives/fake alerts.Virus Total Result: 3/39 (7.69%).
Posted by SASI at 11:11 PM 0 comments
Rogue Application: XP Policy Antivirus
URL: h__p://windows-security-scanner.com
File Name: Install.exe
MD5: BF923B4E6712BFE1171DA2908B01D314
IP: 88.214.202.26
Description: XP Policy Antivirus is Rogue antivirus software, While opening the site itself your system will compormise, means it will automatically scan your system and shows fake malware file list. Finally it will push you to download and install the setup.
Posted by SASI at 10:00 PM 0 comments
Rogue Application: sysantivirus2009
URL: h__p://sysantivirus2009.com/
File Name: setup_1_1_.exe
MD5: 45D265E3A365E76FED4902C7CA02A150
IP: 94.247.2.75
Description: SysAntivirus 2009 is a program powered by trojans of different types.Trojans are well-known mediators in malware installations that bring the malware quietly to the computer.Trojans may delete files and issue commands to repair the OS functionality. Finally they are opening the gate for malware installation.
Posted by SASI at 9:45 PM 0 comments
Rogue Application: virus-doctor
URL: h__p://virus-doctor.com
File Name: VirusDoctor.exe
MD5: 82E6594E1D241F23EB2C524BEECC9963
IP: 64.86.17.9
Description: Virus Doctor demands registration to remove threats which are unlikely to be present at your computer.It will show fake results and slow down and disorder Windows activity. Virustotal Result: 18/39 (46.15%)
Posted by SASI at 9:29 PM 0 comments
Rogue Application: System Tuner (2009)
URL: h__p://system-tuner.com/download.php
File Name: SystemTuner_Setup.exe
MD5: fa36c3b1d61b6e9d7b2f6b0ee645806d
IP: 72.232.186.18
Description: System Tuner is discovering and lists false positives and slows computer down by issuing conflicting commands. It also attempts to detect and disable installed security tools. Virus total Result: 12/39 (30.77%)
Posted by SASI at 8:58 PM 0 comments
Tuesday, February 10, 2009
Rogue Application : SystemSecurity(Updated)
URL: h**p://www.scansecurityonline.com(Updated)
FileName: install.exe
MD5: B2F2CBE9C822D43D401485591252C20A
IP: 79.135.168.112Description: While opening the page it will hijack your system and shows genuine file as a malware files, if you perform any action in system(click, cancel..), it will push u to download and install Anti-spyware-2009 rogue anti spyware.VirusTotal Result: 15/39 (46.15%)
Original Post: Friday, February 6, 2009
Posted by SASI at 9:57 PM 0 comments
A-Z Listing of Rogue AntiMalware Applicatons
Advanced Antivirus
Advanced Antivirus 2008-http://www.aav2008.com
Advanced XP Defender
Advanced XP Fixer
AdvancedAntivirus
AdvancedAntivirus 2008
AdvancedXPDefender
AdvancedXPFixer
Adware Delete 2.0
Adware Deluxe
AlertSpy
Anti –pro-scan
Anti Spy Check
Anti virus 360
AntiMalware Guard
AntiMalwareGuard
antimalware-pro-scan
AntiMalwareShield
AntiSpy Check
AntiSpyBoss
AntiSpyControl
AntiSpyGolden
AntiSpyKit
AntiSpyMaster
AntispySpider
AntiSpyStorm
AntiSpyStorm2008
Antispyware 2008
Antispyware 2008 XP
Antispyware PRO XP
Antispyware Suite
Antispyware2008
Antispyware2008XP
Anti-spyware-2009
AntiSpywareApp
AntiSpywareBot
AntiSpywareControl
AntiSpywareDeluxe
Antispywareexpert
Antispyware-free-scanner
AntiSpywareMaster
AntispywareProXP
AntiSpywareShield
AntiSpywareUpdates
AntispywareXp2009
AntiSpyZone
Antivermins
Antivir gear
Antivir64
AntiVirGear
AntiVirProtect
Antivirus 2008
Antivirus 2008 XP
Antivirus 2009
Antivirus 2010
Antivirus Gold
AntiVirus Lab 2009
Antivirus Master
Antivirus Pro 2009
Antivirus Security
Antivirus XP 2008
AntiVirus2008
Antivirus2008Pro
Antivirus2008XP
Antivirus2009
AntivirusDoc
AntivirusForAll
Antivirusfulldefence
AntivirusGold
AntivirusMaster
AntivirusPro 2009
Antivirussecurity-solution
AntivirusXP2008
AntiVirXP08
ANTIWORM 2008
Aprotectionhelp
AS-pro-xp-download
AV Master
AVproscan
Avproscan
AVSystemCare
Awola
BestsellerAntivirus
BraveSentry
BugDokter
BugsDestroyer
Centod
CleanerMaster
CrisystecSentry
CryptDrive
DangerousVirus
DataHealer
DioCleaner
DisableSpyware
DiscErrorFree
Diskretter
DisqudurProtection
Doctor Adware
Doctor Antivirus 2008
DoctorAdwarePro
DoctorAntivirus2008
DoctorVaccine
Dr.AntiSpy
DriveCleaner
DriveCleaner 2006
eAntivirusPro
EasySprinter
ErrClean
ErrorDigger
ErrorDoctor 2008
ErrorKiller
ErrorProtector
Errorsafe
ErrorSmart
Festplattencleaner
Files Secure
Files Secure 2.2
Filterprogram
Freeonlinescanner9 Gktxaspm Toolbar
HardDiskVakt
HDrivesweeper
IE Antivirus
IE Antivirus 3.2
IEAntiSpyware
IEAntiVirus 3.2
IEAntivirus 3.3
IEAntivirus 3.4
IEDefender
InfeStop
InstantSafePage.com
internet antivirus
internet antiviruspro
InternetSecurityDeluxe
Kvm Secure
KvmSecure
LastDefender
LiveKill
LongLifePC
MacroAV
Magicantispy
Malware Bell 3.2
Malware Crush
MalwareAlarm
MalwareBell
MalwareBot
MalwareBurn
MalwarePatrol Pro
MalwarePatrolPro
MalwarePro
MalwareProtector 2008
MalwareProtector2008
MalwareScanner
MalwareWar
MalwareWiped
MalWarrior
MalWarrior 2008
MasterAntivirus
MaxAntiSpy
Menace Rescue
Micro Antivirus 2009
MicroAntivirus2009
MS antispyware 2009.
MS Antivirus
MS Antivirus
MS Antivirus 2008
msantispyware
msantivirus 2009
MSAntivirus2008
MSantivirus-xp
MSx Antivirus
NadadeVirus
nano antivirus
Neospace Internet Security
NoWayVirus
NowFixPc.com
Online-security-systems
PC Protection Center 2008
PC-Antispy
PCClean Pro
PC-Cleaner
PCCleaner 2008
PC-Cleaner 2008
PCCleaner2008
PCCleanPro
PC-cleanpro.com
PCHealthKeeper
PCPrivacyCleaner
PCSecureSystem
PCSegura
PCSweeperPro
PCTotalDefender
PCTurboPro
PcVirusLess
perfect defender
PersonalAntiSpy Free
Pestcapture
Pest-Patrol
PestSweeper
Power AntiVirus 2009
Power Antivirus 2009
Privacy Warrior
PrivacyProtector
PrivacyRedeemer
PrivacyWatcher
ProAntiSpy
ProtectingTool
Protectnotice
ProtejaseuDrive
Prt3ctionactiv3scan
Prtectionactivescan
PSGuard
PureSafetyHere.com
PyroAntiSpy
RaptorDefence
Razespyware-RAZESPYWARE.NET
Real AntiSpyware
Real Antivirus
RealAV
RealAV
RegClean 2008
Registry Doctor
Registry Doctor 2008
Registry Great
RegistryCare
RegistryCleanerXP
RegistryCleanFixer
RegistryDefender
RegistryDoctor 2008
Repair Registry Pro
RepairRegistry2008
SafeBrowseNow.com
SafePcTool
SaferScan
ScanSpywarev3.8
SchijfBewaker
SearchAndDestroy
SecureExpertCleaner
SecurePCCleaner
Securityscannersite
SemErros
SlimShield tied with Winhound Spyware Remover
Smartantivirus2009v2
Smart-antivirus2009v2buy
Smartantivirus-2009v2buy
Smartantivirus2009v2-buy
Smartantivirusv2
Smitfraud
SpamBlockerUtility
Spy Guarder
Spy Trooper
SpyAway
SpyAxe
SpyBurner
SpyCrush
SpyGuard
SpyGuarder
SpyHeal
SpyKillerPro
SpyLocked
SpyMaxx
SpyOnThis
Spy-Rid
SpySheriff
SpySheriff
SpyShield
SpySnipe
Spyware Annihilator Pro
SpyWare Bomber
Spyware Destructor
Spyware Remover
Spyware Scanner 2008
Spyware Scrapper
SpywareBomb
SpywareDestructor
Spywarefighter
SpywareIsolator
SpywareNo
SpywarePro
SpywareQuake
SpywareQuake 2.4
Spyware-quickscan-2008
SPYwareRemover
SpywareScanner2008
SpywareSecure
SpywareStop
SpywareSweeperPro
SpyWatchE
StopingSpy
SuperSpywareKiller
SwiftCleaner
SysKontroller
System Antivirus
System Antivirus 2008
System doctor
System Integrity Scan Wizard
System Live Protect
SystemAntivirus 2008
SystemAntivirus2008
SystemDefender
SystemDoctor 2006
SystemErrorFixer
SystemGuard
SystemSecurity
TheSpyBot
Total Antivirus
Total Antivirus 3.11
Total Secure 2009
Total Secure 2009
Total Secure 2009-http://www.total-secure2009.com
TotalAntivirus
Total-secure2009
Trace Sweeper
TrustedAntivirus
TrustedProtection
Ultimate Antivirus 2008
Ultimate Antivirus 2008
Ultimate Fixer 2007
UltimateAntivirus2008
UltimateCleaner
UltimateCleaner 2007
Ultimatefixer2007
UltraAV
Unigray
VIPAntiSpyware
VirusEffaceur
Virusgarde
VirusHeal
VirusHeat 4.4
VirusIsolator
Viruslabs2009
VirusLocker
VirusProtect Pro
VirusRanger
VirusRemover2008
Virusschlacht
Vista Antivirus 2008
VistaAntivirus 2008
VistaAntivirus2008
Vitae Antivirus
Vitae Antivirus 2008
VitaeAntivirus 2008
WebSpyShield
Win Antivir 2008
win antivirus 2008
Win Defender 2008
Winantispyware 2007
WinAntispyware 2008
WinAntiVir
WinAntiVirus its companion WinAntiSpyware 2005
WinAntiVirus Pro
WinAntiVirus Pro 2006
Winantivirus pro 2007
WinAntivirusPro 3.7
WinDefender 2008
WinDefender2008
Windefender2009
Windows Antivirus
Windows Antivirus 2008
WinFixer
WinFixMaster
Winifixer
WinPerformance
WinProtector 3.8
Winprotector 3.8
winprotector 3.8
Winreanimator
winsecureav
WinSecureDisc
WinSpyControl
WinSpyKiller
WinSpywareProtect
WinX Security Center
WinXDefender
Win-xp-antivir-hqscanner
Winxp-antivir-on-line-scan
Winxprotector
WistaAntivirus
WorldAntiSpy
XLG Security Center
XLGuarder
XP Antispyware 2009
XP Antivirus 2008
XP Protector 2009
XP SecurityCenter
XP2008-protect
XPAntivirus
XPAntivirus 2009
XPAntivirus2008
XPAntivirus2009
Xpburnerpro
XPCleaner
XPCleanerPro
XPert Antivirus
XPert Antivirus Enterprise
XPertAntivirus
XP-Guard
XPonlinescanner
XPonlinescanner9
XPprivacypro
XP-protections
XPprotectionsoftware
XPprotector
XPrepairpro
XPSecurityCenter
XPshield
XP-Shield
XP-shield
XP-vista
XP-vista-download
Xscanner.malwarealarm
Xscanner.malwarealarms
Xscanner.shredderscan
Xscanner.shredder-scan
Xscanner.shredder-scanner
Xscanner.spyshredderscanner
Xscanner.xmalwarealarm
Xscanner.xspy-shredder
Xspy-shredder
Xspyware
Xsremover
YourPrivacyGuard
Zinaps Anti-Spyware
Posted by SASI at 8:42 PM 0 comments
Rogue Application : HDrivesweeper
URL: h__p://www.hdrivesweeper.com/download.php
File Name: HDriveSweeper_Setup.exe
MD5: C1FC9887457353607062FD8DF689FDE0
IP: 72.232.186.21
Description: HDriveSweeper claims to be a privacy protection program that will perform an opposite tasks on your computer. Utilizing usual method as other rogue program, HDriveSweeper will scan computers and produce exaggerated scan results to convince user in purchasing the license version before fixing errors.
Posted by SASI at 4:32 AM 0 comments
Rogue Application : XPburnerpro
URL: xpyburnerpro.com
File Name: XpyBurner_setup.exe
MD5: 79E69A55877D7C83AB8552E61F4E8ED7
IP: 72.232.186.20
Description:AdvancedCleaner and SpyBurner are the parental programs for malware of XpyBurner (Xpy Burner).The aim of such actions is to delete truly valuable files in order to create disordering and erase files you need. Accidentally, XpyBurner may have erased several system files and thus destroy Windows before user would have taken the decision to buy the full version.
Posted by SASI at 4:22 AM 0 comments
Monday, February 9, 2009
Rogue Application through romanticsloving.com
URL: h__p://www.romanticsloving.com/
File Name: programm.exe
MD5: 743A09720E81C36DE3BE040AD91B2DFF
IP: 89.29.204
Description: Prompt to download programm.exe, downloading and installing rogue antispyware MS antispyware 2009.
Posted by SASI at 8:13 PM 0 comments
Friday, February 6, 2009
Rogue Application : Anti-spyware-2009
URL: h**p: //anti-spyware-2009.info/products/antispyware/
FileName: InstallAVg_880865.exe
MD5: f0fe68bc994319482a593d3e030df9b4
IP: 89.28.13.218
Description: Fake AV:anti-spyware-2009,VirusTotal Result: 9/39 (23.08%)
Posted by SASI at 4:15 AM 0 comments
Rogue Application : SystemSecurity
URL: h**p://www.scansecurityonline.com, h**p://examinesecurityonline.com/install/ws.zip,
FileName: install.exe
MD5: 3b5d368e2436c7a86a607846d0ae0b23,
7410cf3775b29c0c92d9385ca60fd3bf,
8ed4f28f84a4b99e265ebc8837bc5821(Different setup files are downloading)
IP: 79.135.168.112
Description: While opening the page it will hijack your system and shows genuine file as a malware files, if you perform any action in system(click, cancel..), it will push u to download and install Anti-spyware-2009 rogue anti spyware.VirusTotal Result: 13/39 (33.33%).
Posted by SASI at 4:14 AM 0 comments
Rogue Application : Antimalware-pro-scan
URL: h**p://antimalware-pro-scan.com/promo/download/trial/InstallAVg_77038507.exe
FileName: nstallAVg_77038507.exe
MD5:62c01d337e55d417596384ad79168eca
IP: 195.24.78.186
Description:It will hijack your system and shows genuine file as a malware files,and push you to install Antimalware-pro-scan. VirusTotal Result: 7/39 (17.95%)
Posted by SASI at 4:13 AM 0 comments
Rogue Application : Anti virus 360
URL: h**p://rapidsoftwareupdates.com/download/av_360glof.exe
File Name: av_360glof.exe
MD5: 096438bb1f1a17a404a73ecfe10ad3a0
Description: Fake AV:Anti virus 360, VirusTotal Result: 15/39 (38.46%)
Posted by SASI at 4:12 AM 0 comments
Thursday, February 5, 2009
List of Rogue softwares
* Antivirus 2010
* Antivirus Pro 2009
* Anti –pro-scan
* Antispyware 2008 XP
* AVproscan
* IE Antivirus 3.2
* UltraAV
* Total Secure 2009
* Winprotector 3.8
* XP Antispyware 2009
* msantivirus 2009
* Antivirus 2009
* Total Secure 2009
* Antispyware 2008
* AntispywareXp2009
* RealAV
* Spywarefighter
* win antivirus 2008
* Windefender2009
* ScanSpywarev3.8
* Avproscan
* winprotector 3.8
* nano antivirus
* perfect defender
* internet antivirus
* internet antiviruspro
* msantispyware
Posted by SASI at 2:09 AM 0 comments
Rogue Application : windows-security-scanner.com
URL : windows-security-scanner.com
File Name:AntivirusXP.exe
Md5: ae5ea93cccacc0a4f43784534e246fc9
IP :70.84.195.170
Description : Fake Antivirus application, which will show fake malware files and repair system activities and drops more than 15 unwanted files.
Posted by SASI at 12:39 AM 0 comments