Jump to content

Anatomy of a malware scam


Humpty

Recommended Posts

Good article with heaps of screenies of the rogue XP Antivirus and the tricks these rogues use to rip off the unwary.

 

Might add that I do go to these sort of sites quite often and FF's noscript stops the lot in that I have to allow the site through noscript in order to see what's gonna happen.

Before the popup in the screen shot there was actually another one too. That one was an animated GIF that looked like it was performing a virus scan of your computer. Needless to say, it found several pieces of fake malware on my computer, hence the dire warning in the fake popup.

 

If this looks suspicious to you, it should. We are not on www.msn-us.info. We are on virus-securityscanner.com. When you go to any of the sites that are linked in the blog comments you download a few files, and then it redirects you to hxxp://virus-securityscanner.com/2008/3/freescan.php?aid=880421, where the last part is some form of identifier that we will return to shortly.

Anatomy of a Rogue Security App.

Link to comment
Share on other sites

Good article with heaps of screenies of the rogue XP Antivirus and the tricks these rogues use to rip off the unwary.

 

Might add that I do go to these sort of sites quite often and FF's noscript stops the lot in that I have to allow the site through noscript in order to see what's gonna happen.

 

Anatomy of a Rogue Security App.

Might add that I do go to these sort of sites quite often and FF's noscript stops the lot in that I have to allow the site through noscript in order to see what's gonna happen.

 

Just a bit of advice to members that do not know our member Humpty.

He has many years experience doing what he is doing. He has many security methods to protect his system. If all else fails he has many back up PC's and methods of "recovery".

DON'T TRY THIS AT HOME !!!

 

Humpty investigates things to protect us other members.

 

Best wishes,

:) davey

Link to comment
Share on other sites

Good article with heaps of screenies of the rogue XP Antivirus and the tricks these rogues use to rip off the unwary.

 

Might add that I do go to these sort of sites quite often and FF's noscript stops the lot in that I have to allow the site through noscript in order to see what's gonna happen.

 

Anatomy of a Rogue Security App.

The main object is to download one of the many antiviruspro2008 trojans.

 

If you install either hpHosts or MVPS HOSTS file then the Virus-securityscanner(dot)com site will be blocked.

"Education is what remains after one has forgotten everything he learned in school." - Albert Einstein

IE7Pro user

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.