Archive for the ‘Uncategorized’ Category

New Rogue : AntiVirusPro 2010

Tuesday, September 8th, 2009

AntiVirusPro 2010 is a new/updated rogue. We have updated our definitions to detect and remove all traces of this rogue.

AntiVirusPro 2010 Application
Rogue - AntiVirusPro 2010 Main Screen

Click here to download SUPERAntiSpyware to Remove AntiVirusPro 2010

Norton Latest Release Causes Problems for Users

Wednesday, August 26th, 2009

We have been receiving a higher number of “issues” in our support queue with users running NortonĀ - it appears Norton has pulled the latest release that was issued last Wednesday and is requesting users run a fix tool and/or downgrade their product.

PC World Article
http://www.pcworld.com/businesscenter/article/170810/symantec_offers_fix_for_buggy_norton_patch.html

Here’s a Norton tool to fix the problem:
http://www.symantec.com/norton/support/kb/web_view.jsp?wv_type=public_web&docurl=20090821103237EN

New Rogue : PCAntiSpyware 2010

Monday, August 3rd, 2009

PCAntiSpyware 2010 is a new/updated rogue. We have updated our definitions to detect and remove all traces of this rogue.

PCAntiSpyware 2010 Application
Rogue - PCAntiSpyware 2010 Main Screen

Click here to download SUPERAntiSpyware to Remove PCAntiSpyware 2010

New Rogue : Smart Protector

Thursday, July 30th, 2009

Smart Protector is a new/updated rogue. We have updated our definitions to detect and remove all traces of this rogue.

Smart Protector Application
Rogue - Smart Protector Main Screen

Click here to download SUPERAntiSpyware to Remove Smart Protector

Fake Videos : Michael Bisping Post Fight Interview

Tuesday, July 14th, 2009

I had a friend call me last night to tell me that his computer was infected after he did “nothing” - typical :) After a little investigation I found out that he was searching for a post fight interview from UFC 100 for a fighter named “Michael Bisping” who was knocked out by Dan “Hendo” Henderson. He found a nice link on Google that led to the following series of events (don’t try this at home!):

Video site indicating they have the video….

Now just click to watch the video…..

SUPERAntiSpyware Scan after attempting to watch video….

As you can see these links are floating around Google, Yahoo and MSN. Remember, think before you click!

If you have come across these types of situations, it’s a good idea to scan with SUPERAntiSpyware to make sure your system is clean!

New Rogue : PC Security 2009

Monday, July 13th, 2009

PC Security 2009 is a new/updated rogue. We have updated our definitions to detect and remove all traces of this rogue.

PC Security 2009 Application
Rogue - PC Security Main Screen

Rogue - PC Security Main Screen

Files/Folders Created
%CSIDL_PROGRAMS%\PC_SECURITY2009
%CSIDL_PROGRAMS%\PC_SECURITY2009\PC_SECURITY2009.LNK
%CSIDL_PROGRAMS%\PC_SECURITY2009\UNINSTALL.LNK
%PROGRAMFILES%\PC_SECURITY2009
%PROGRAMFILES%\PC_SECURITY2009\AVENGN.DLL
%PROGRAMFILES%\PC_SECURITY2009\HTMLAYOUT.DLL
%PROGRAMFILES%\PC_SECURITY2009\PC_SECURITY2009.CFG
%PROGRAMFILES%\PC_SECURITY2009\PC_SECURITY2009.EXE
%PROGRAMFILES%\PC_SECURITY2009\PTHREADVC2.DLL
%PROGRAMFILES%\PC_SECURITY2009\UNINSTALL.EXE
%PROGRAMFILES%\PC_SECURITY2009\WSCUI.CPL
%PROGRAMFILES%\PC_SECURITY2009\DATA
%PROGRAMFILES%\PC_SECURITY2009\DATA\DAILY.CVD
%PROGRAMFILES%\PC_SECURITY2009\MICROSOFT.VC80.CRT
%PROGRAMFILES%\PC_SECURITY2009\MICROSOFT.VC80.CRT\MICROSOFT.VC80.CRT.MANIFEST
%PROGRAMFILES%\PC_SECURITY2009\MICROSOFT.VC80.CRT\MSVCM80.DLL
%PROGRAMFILES%\PC_SECURITY2009\MICROSOFT.VC80.CRT\MSVCP80.DLL
%PROGRAMFILES%\PC_SECURITY2009\MICROSOFT.VC80.CRT\MSVCR80.DLL

Registry Items Created/Added
HKLM\SOFTWARE\PC_Security2009
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run#PC Security 2009 = “C:\Program Files\PC_Security2009\PC_Security2009.exe” /hide
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PC_Security2009
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PC_Security2009#DisplayName = PC Security 2009
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PC_Security2009#UninstallString = C:\Program Files\PC_Security2009\Uninstall.exe

Click here to download SUPERAntiSpyware to Remove PC Security 2009

New Rogue : System Tuner

Saturday, July 11th, 2009

System Tuner is a new/updated rogue claiming to “tune” your system. We have updated our definitions to detect and remove all traces of this rogue.

System Tuner Application
Rogue - System Tuner Main Screen

Files/Folders Created
%CSIDL_PROGRAMS%\SYSTEMTUNER
%PROGRAMFILES%\SYSTEMTUNER

Registry Items Created/Added
HKLM\SOFTWARE\SystemTuner
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SystemTuner

Click here to download SUPERAntiSpyware to Remove System Tuner

New Rogue : WiniFighter

Thursday, July 9th, 2009

WiniFighter is a new/updated rogue from the WinBlueSoft series. We have updated our definitions to detect and remove all traces of this rogue.

WiniFighter Application
Rogue - WiniFighter Main Screen

Files/Folders Created
%CSIDL_COMMON_PROGRAMS%\WINIFIGHTER
%CSIDL_COMMON_PROGRAMS%\WINIFIGHTER\1 WINIFIGHTER.LNK
%CSIDL_COMMON_PROGRAMS%\WINIFIGHTER\2 HOMEPAGE.LNK
%CSIDL_COMMON_PROGRAMS%\WINIFIGHTER\3 UNINSTALL.LNK
%PROGRAMFILES%\WINIFIGHTER SOFTWARE
%PROGRAMFILES%\WINIFIGHTER SOFTWARE\WINIFIGHTER
%PROGRAMFILES%\WINIFIGHTER SOFTWARE\WINIFIGHTER\DATA.BIN
%PROGRAMFILES%\WINIFIGHTER SOFTWARE\WINIFIGHTER\LICENSE.TXT
%PROGRAMFILES%\WINIFIGHTER SOFTWARE\WINIFIGHTER\UNINSTALL.EXE
%PROGRAMFILES%\WINIFIGHTER SOFTWARE\WINIFIGHTER\WINIFIGHTER.EXE
%PROGRAMFILES%\WINIFIGHTER SOFTWARE\WINIFIGHTER\WINIFIGHTERSVC.EXE

Registry Items Created/Added
HKCU\Software\WiniFighter
HKCU\Software\WiniFighter#CurrentVersion =
HKCU\Software\WiniFighter#AgentsSettings
HKCU\Software\Microsoft\Windows\CurrentVersion\Run#WiniFighter = C:\Program Files\WiniFighter Software\WiniFighter\WiniFighter.exe -min

Click here to download SUPERAntiSpyware to Remove WiniFighter

New Rogue : Spyware XP Guard

Wednesday, July 8th, 2009

Spyware XP Guard is a new/updated rogue. Part of the WinDefender family. We have updated our definitions to detect and remove all traces of this rogue.

Spyware XP Guard Application
Rogue - Spyware XP Guard Main Screen

Click here to download SUPERAntiSpyware to Remove Spyware XP Guard

New Rogue : Smart Defender Pro

Tuesday, July 7th, 2009

Smart Defender Pro is a new/updated rogue. We have updated our definitions to detect and remove all traces of this rogue. Being distributed through the spam and adult/keygen sites.

Smart Defender Pro Application
Rogue - Smart Defender Pro Main Screen

Files/Folders Created
%CSIDL_COMMON_DESKTOPDIRECTORY%\SMART DEFENDER PRO.LNK
%CSIDL_APPDATA%\SMART DEFENDER PRO
%CSIDL_COMMON_PROGRAMS%\SMART DEFENDER PRO
%CSIDL_COMMON_PROGRAMS%\SMART DEFENDER PRO\SMART DEFENDER PRO.LNK

Registry Items Created/Added
HKCU\Software\Smart Defender PRO
HKCU\Software\Smart Defender PRO#Smart Defender PRO = D41D8CD98F00B204E9800998ECF8427E
HKCU\Software\Smart Defender PRO#LastUpdate = 2009-06-30
HKCU\Software\Smart Defender PRO#ZF = XOge3/+m0ghHNi2HpBX3b2fhucJAeDTUvPHfYWg5HOGaKMyJFJSWqeIHYlB0aXWRnnrHLw==
HKCU\Software\Smart Defender PRO#SS = 321
HKCU\Software\Smart Defender PRO\threats

Click here to download SUPERAntiSpyware to Remove Smart Defender Pro