SysCleaner, SystemDefender

Posted by Marcin on February 15th, 2008

These are a bit older rogue applications, but I decided to point them out on the blog for a couple of reasons. SystemDefender is installed by quite a few crack sites and is one of the most aggressive rogue applications I have seen. This application continuously brings up warnings that your computer is infected and that you should buy their program. What else is new?

SysCleaner

SystemDefender

We have provided removal instructions for anybody unfortunate to have downloaded these applications.

Removal instructions for SysCleaner
Removal instructions for SystemDefender

Marcin Kleczynski

WinReanimator

Posted by Marcin on February 15th, 2008

A new rogue has decided to pop up again. This one installs through the Vundo trojan. It drops fake malware and pretends to detect it hoping you will buy it.

WinReanimator

We have provided removal instructions for anybody unfortunate to have downloaded this application.

Removal instructions for WinReanimator

Marcin Kleczynski

Can Spam Kill You?

Posted by Marcin on February 11th, 2008

When I read this, it made my day.

“E-mail scammers and spammers have long offered lavish rewards to those naive enough to post cash to spirit money out of a foreign country or to collect on a lottery ticket. Now cyber-thieves are turning to a sharper edge: death threats and outright extortion.” (Source)

It is hilarious to see what some of these spammers would send. What would you do if you received a death threat from a spammer who demanded money to cancel the “assassination?”

Marcin Kleczynski

Immunizr, WinSpyKiller

Posted by Marcin on February 9th, 2008

Just reporting a few more rogue applications. Just like the rest, these rogue applications provide false positives in hope that you will buy their product.

Immunizr

WinSpyKiller

We have provided removal instructions for anybody unfortunate to have downloaded these applications.

Removal instructions for Immunizr
Removal instructions for WinSpyKiller

Marcin Kleczynski

AntiSpyKit, MalwareCore

Posted by Marcin on February 9th, 2008

Two more rogue applications have popped up within the last week. Their names: AntiSpyKit and MalwareCore. Both rogue applications display false positives in hope of the user purchasing the software.

AntiSpyKit

MalwareCore

We have provided removal instructions for anybody unfortunate to have downloaded these applications.

Removal instructions for AntiSpyKit
Removal instructions for MalwareCore

Marcin Kleczynski

VirusHeat

Posted by Marcin on February 9th, 2008

Woah! It has been more than six months since the Malwarebytes team has blogged. We apologize for taking so long but our new program Malwarebytes’ Anti-Malware was in development and took up most of our time. Now that the program was released we have a lot more time on our hands for other things, like blogging.

I would love to start the day by announcing that everything in the malware world is just dandy, unfortunately I would be lying. Since our time away from the blog, hundreds of new rogues have been released - and this week has not been any different. A new rogue reared its ugly head and its name was VirusHeat.

VirusHeat is just your average rogue - planting malware and then pretending to detect it. It generates false positives and then makes you pay to remove them. Just look at it - looks like your typical rogue:

VirusHeat

We have provided removal instructions for anybody unfortunate to have downloaded this application.

Removal instructions for VirusHeat

Marcin Kleczynski


Wordpress Theme by Tech Replies
Powered By Wordpress
Copyright © 2008 Malwarebytes Blog. All rights reserved.