Articles Archive for June 2009

USAntispy
Posted in Information and Removal on 30 June 2009

USAntispy is a fake security program that tries to misuse American patriotic feelings. The software is not good:
1. It provides fake scam results, legitimate applications are labelled as spyware threats.
2. It has no fully functional version, you will not receive a key if you purchase USAntispy
3. The payment system is not real, you might loose [...]

Trojan.Spy.ZBot.VG
Posted in BitDefender on 30 June 2009

Trojan.Spy.ZBot.VG

“Privacy Violation Alert”
Posted in Information and Removal on 30 June 2009

“Privacy Violation Alert” is a popup, created to make PC users waste their money on the “full” version of AntivirusBEST. “Privacy Violation Alert” shows a fake security alert about a parasite, which is sending users private data to an untrusted internet host. This scare tactic, used by AntivirusBest, is a fake and the only thing [...]

To *** or Not to Mask: Usability Versus Security in Password Masking
Posted in Information and Removal on 30 June 2009

On June 23, Jakob Nielsen posted an article declaring that password masking on the user interface is more harmful in terms of usability than helpful to the security of an application to which Bruce Schneier, in a June 26 blog post agreed. Both argued that masking the characters when a user enters a password is [...]

Post from: TrendLabs | Malware Blog - by Trend Micro

To *** or Not to Mask: Usability Versus Security in Password Masking

Antivirus Security
Posted in Information and Removal on 29 June 2009

Antivirus Security is just another fake remover that plaques internet today. This rogue anti-spyware program is quite similar to other programs released in year 2009, that is relies on being pushed though trojan infections or fake websites to unsuspecting victim PCs. The results is a PC that bombs user with various alerts or security center [...]

SecretService
Posted in Information and Removal on 29 June 2009

SecretService is a very pretentious name for a very bad product. It is an antivirus-scam that claims cleaning your PC from all kinds of infections. Well, mostly from non-existing ones as it does not had fully working removal module. SecretService is cloned from other similar parasites and is a really simple application : it searches [...]

Active Antivir
Posted in Information and Removal on 29 June 2009

Active Antivir is not a real antivirus, but a tool of sucking money from your credit card account. Once your PC catches some trojans, you will get bombed by popups and alerts promoting ActiveAntivir or warning about non-existing threats on your PC. Suddenly Windows starts recommending non-Microsoft product, does not this sounds weird? Well, let [...]

AntivirusBEST
Posted in Information and Removal on 29 June 2009

AntivirusBEST, ironically, is a scam - a rogue anti-spyware program that appeared in end of June,2009. It is pushed around with the help of trojan drive-by downloads or bundled with other shareware. Once your PC is infected with trojans belonging to makers of AntivirusBEST, you start seeing some popups or fake security center alerts claiming [...]

Michael Jackson Video Leads to Malware Download
Posted in Information and Removal on 29 June 2009

Cybercriminals once again used the passing of Michael Jackson, the ‘King of Pop,’ a few days ago as an opportunity to go about with their malicious activities and attack innocent users.
We spotted an email (see Figure 1 below) about Michael Jackson’s death written in Spanish claiming to be from CNN Mexico.

Upon closer analysis (see Figure [...]

Post from: TrendLabs | Malware Blog - by Trend Micro

Michael Jackson Video Leads to Malware Download

Files for Ransom… or Not
Posted in Information and Removal on 29 June 2009

A new ransomware spreading through email is on the loose.
On the outset, the worm detected by Trend Micro as WORM_RANSOM.FD may look like a normal mass-mailing worm but further analysis reveals that this comes with a deadly payload. With only a few exceptions (files with .rwg, .dll, .exe, .ini, .vxd, and .drv extensions are [...]

Post from: TrendLabs | Malware Blog - by Trend Micro

Files for Ransom… or Not