Rogue Applications On The Increase

This post was written by admin on April 15, 2009
Posted Under: Free PC Security,Hijacked Hosts,rogue software

More and more users are being duped into downloading fake applications which perform scans of their machine and show an exaggerated number of problems, and then they pay to download this malware!

Typical Fake Scan Results

Typical Fake Scan Results

All of these rogue programs once installed on a system will generate fake messages of infection which  encourage the user to purchase a copy of the rogue application to clean infections and restore their machine to good working order.

A quick scan is performed and shows so many irregularities it's a wonder that the computer will even boot up let alone function.

Typical analysis after fake scan

Typical analysis after fake scan

Frequently, unsuspecting users do get enticed by the use of these scare tactics. The majority of these are fake Antispyware or Registry Cleaning products which have no EULA .

Many of these rogues drop a file 'iehelper.dll' into the system. This file is detected as FakeAlert and is installed as a BHO in order to display fake drop-down messages within Internet Explorer.

Once installed it connects to infected sites and downloads other malware which is programmed to download newer versions from another infected site.

A more recent problem has been the modification of the Hosts File, where genuine sites have been 'spoofed' and the user is led to believe that the site is genuine.

Microsoft Spoof Site

Microsoft Spoof Site

An example would be 'microsoft.updatespc.com'  (above) which is absolutely nothing to do with Microsoft, the site is a fake scanner download site.

With the name microsoft.updates the average user would believe that it is a Microsoft site, and seeing the Vista logo and also 'Designed for Windows 95/98/ME/2000 & Vista' would add to its authenticity along with fake seals of approval.

Surprisingly, the above fake program does not mention WinXP, which is its biggest target!

These rogue programs will only cause more problems as they infect users computers with bundles of malware, add unwanted and malicious domains to the Hosts File and those who purchase the fake programs pay via credit card and then become the victim of Identity Theft and Fraud.

There are many programs to clean malware from infected computers which are free and very effective.  In some cases it is also necessary to provide links to specific removal tools.

No matter what security applications you may have the first line of defence is YOU, the user.

Do NOT click on links and download applications that promise to 'fix' your computer so that it 'runs like new' again.

Research the program, Google it, find feedback on it NOT the fake testimonials on the sites page and seek advice from those who know how to check these programs for validity.

Free Tools and related articles:
WinPatrol 2010- Prevention
HostsXpert and Hosts Files - Clean infected Hosts
SpywareBlaster 4.2 - Prevention
Malwarebytes Antimalware - Malware Removal
Superantispyware - Malware Removal
Web of Trust - Browser Addon which warns of dangers.
List of Known Malicious Sites
List of Rogue Programs

AddThis Social Bookmark Button

Surf Safer, Surf with WOT - Click Here or the links below

Internet ExplorerWeb of Trust for Internet Explorer

FirefoxWeb of Trust for Firefox

Google ChromeWeb of Trust for Google Chrome

OperaWeb of Trust for Opera

, , , , , , ,

Vote this page

topvotes.appspot.com

Add a Comment

required, use real name
required, will not be published
optional, your blog address

IMPORTANT! To be able to proceed, you need to solve the following simple math (so we know that you are a human) :-)

What is 12 + 5 ?
Please leave these two fields as-is:
CommentLuv badge
Please leave these two fields as-is:

Protected by Invisible Defender. Showed 403 to 11,629 bad guys.

Get Adobe Flash playerPlugin by wpburn.com wordpress themes