Tuesday, March 17, 2009

Rogue Application: WinPC Defender

URL: win-pc-defender.com
File Name: install.exe
MD5: 8BDEAE9B64CD860FB8832BEC9106E6EF
IP: 206.125.44.28
Description: WinPC Defender is another way for scammers to get your money. Win PC Defender is presented as a security program while it’s not able to perform a single function of a security tool. The program is designed to look like an anti-spyware and this tricks people into purchasing it.
Virus Total Result: 7/39(detection rate)

Monday, March 16, 2009

Rogue Application: PersonalAntivirus

URL: personal-antivirus.com
File Name: PersonalAntivirus.exe
MD5: 11B9FAFF90725A6B13CFC44ECC48DE20
IP: 194.165.4.224
Description: Personal Antivirus (PersonalAntivirus) is a near clone of General Antivirus.The program has been detected after General Antivirus had been disclosed, and is supposedly a successor of it. Attempting to make users pay for Personal Antivirus, hackers infect them with promo-version or make them install it through the tricky ads, the most effective is supposedly a fake online scanners. Likewise General Antivirus, Personal Antivirus is not just an annoying adware, it harms computer and may destroy Windows.
Virus Total Result: 1/39(detection rate)

Rogue Application: Totalantispyware2009

URL: totalantispyware2009.com
File Name: setup.msi
MD5: 7D9389266A9E5852C7C453BE6EAA0C6B
IP: 64.191.12.38
Description: Total Antispyware is promoted as a security tool but it is distributed as malware and it functions as malware. Although it is designed to look like an anti-spyware application, the look doesn’t make this program useful or legitimate.
Virus Total Result: 1/39(detection rate)

Rogue Application: System Security Through Bestfiresfull

URL: h__p://Bestfiresfull.com
File Name: install.exe
MD5: B0E8AF4979B86E6E8A391526F3513F6C
IP: 209.44.126.14
Description: The list of numerous malicious websites promoting System Security rogue anti-spyware has been recently reinforced by Bestfiresfull.com. By its technical essence, Bestfiresfull.com can be regarded as a browser hijacker that drills its way into the compromised computer as a Vundo Trojan and then secretly modifies browser settings.

Monday, March 9, 2009

Rogue Application: MalwareDefender2009

URL: EasyWinScanner17.com
File Name: MalwareDefender2009.exe
MD5: 3C74338A849ECADB149588550EC0E270
IP: 209.249.222.48
Virus Total Result: 16/39 (41.03%)

Rogue Application: Antivirus Agent Pro

URL: avagentpro.com
File Name: setup.exe
MD5: DDF7DB23B6F4B4DB13CFD07DA733A7E7
IP: 82.146.49.35
Virus Total Result:2/39

Friday, March 6, 2009

Rogue Application: SysCleanerPro

URL: h__p://www.system-cleanerpro.com/dwn.html
File Name: setup.msi
MD5: 94FC510BA75DFE68AD045B7F86B2A14E
IP: 64.191.12.38
Description: SysCleanerPro is typical online scam: it offers deleting malwares and protecting a machine for a fee ($19.95). But the program is not able to perform any of the mentioned actions. SysCleaner Pro is only good at loading fabricated security alerts. The fake warnings are meant to trick people into buying the useless program.
Virus Total Result: 1/39 (2.56%)

Thursday, March 5, 2009

Rogue Application: Virus Melt

URL: vmfastscanner.com
File Name: Setup_build6_7.exe
MD5: 793626167D021FCE703658C2574249D8
IP: 64.86.17.9
Description: Once Virus Melt is in, Virus Melt tries to trick you into buying the “full” version of Virus Melt with fake system warnings, and by noting harmless files as dangerous.
Virus Total Result: 4/39 (10.26%).

Rogue Application: PrivacyGuardPro

URL: h__p://www.privacyguardpro.com/download.php
File Name: PrivacyGuardProSetup.exe
MD5: 91a66efc62ee16c1165949d040bf61f8
IP: 195.144.21.26
Description: PrivacyGuardPro and PrivacyProtectionSuite as fake privacy protection tools, both are same. They are installed normally either secretly or through the bothering flow of misleading alerts at the fake online scanners. The trialware of PrivacyGuardPro makes a request for the enormous portion of RAM, and Windows normally satisfies it. This creates a regular shortage of resource, so the programs that relay need it cannot run at all or do not run properly. That leads to sudden system reboots and losses of temporary data that you have not been in time to save.
Virus Total Result:0/39 (0.00%)

Sunday, March 1, 2009

Rogue Application: VirusRemover 2009

URL: h__p://bestvirusremover2009.com/
File Name: virusremover2009_setup_free_en.exe
MD5: 0E6D09B43A2DAF3790D3356A493953B1
IP: 93.174.93.213
Description: VirusRemover 2009 is just more fake antivirus software, designed to trick you out of your money.VirusRemover 2009 works like other scamware: VirusRemover 2009 pops up fake alerts about threats that don’t exist, to scare you into buying to “full” version of VirusRemover 2009. VirusRemover 2009 may have been installed through a Trojan like Zlob, or you might have downloaded a VirusRemover 2009 trial through an ad.
Virus Total Result:18/39 (46.15%)

Rogue Application: System Security(Updated)

URL: w_w.StabilityInternetGlobalOnline.com
File Name: SystemSecurity.exe
MD5: D8200F0F161092903EE535D387E3C96B
IP: 91.211.65.110
Description: StabilityInternetGlobalOnline.com is a scam site that pimps fake anti-spyware, System Security. StabilityInternetGlobalOnline.com simulates a system scan, and then sends you some “security” alerts.
Virus Total Result: 12/39 (30.77%)

Rogue Application: spyware-fighter

URL: h__p://www.spyware-fighter.com
File Name: Install.exe
MD5: EDC125E15FC7663C4483B12F6E1E8F33
IP: 92.62.101.123
Description: fake antispyware software. Like other rogue antispyware, Spyware Fighter pops up fake system alerts to try and scare you into buying Spyware Fighter.
Virus Total Result:16/39 (41.03%)


Free Blogspot Templates by Isnaini Dot Com and Supercar Pictures. Powered by Blogger