Aug 26

Green AV Description:

Green AV (also known as GreenAV) is a major threat for one’s computer security and the user’s privacy because it applies deceptive impostor tactics to infiltrate and interfere with the PC processes. Green AV maintains the malicious traditions of its forerunning malware known as Green Antivirus 2009. Like the rest of rogueware applications out there, Green AV makes it onto a new computer without authorization, for which purpose it uses backdoor trojan viruses and its corrupt websites Green-av-pro.com or Green-av.com. Once Green AV finds itself inside a new host environment, it makes itself totally comfortable there by creating a few registry keys and some of its malicious files. Those actions result in the malware’s invasion of the compromised system. When Green AV unregistered version installs on your computer, it displays numerous popup ads

Aug 25

TrustNinja Description:

TrustNinja (aka Trust Ninja) is another rogue program that aims to hop into your wallet and get some money out of it. Apologies for this metaphor but TrustNinja wants exactly what we’ve written above – it makes computer users sure they need its licensed version to protect themselves against spyware infections out there. A closer look at TrustNinja testifies to the fact that the program hails from the same family of rogues as SaveSoldier, SaveKeep, WiniShield, WiniFighter and WinBlueSoft which were once extremely dangerous applications. Thanks to such a “rich” malware background behind it, TrustNinja has no trouble penetrating into a random computer through security exploits which get spotted by affiliate trojan viruses. Upon this attack, TrustNinja reconfigures some of the system executables by creating some new registry values and putting in some malicious files into system32 folder.

Aug 25

Osadwarekill.microsoft.com Description:

Osadwarekill.microsoft.com is a fraudulent domain name associated with Antivirus System Pro rogueware propagation practices. One can tell Osadwarekill.microsoft.com hijacker through unwanted browser diverts to the domain with the corresponding URL displayed in the address bar of the web browser. The odd thing about Osadwarekill.microsoft.com is the fact that a website with such URL does not actually exist and you won’t be able to hit it if your PC is not infected with Antivirus System PRO malicious freeware. Through Osadwarekill.microsoft.com hijacker, Antivirus System PRO invades a part of your system and takes advantage of the parameter called Hosts file. Then, Osadwarekill.microsoft.com value is granted to the Hosts file and hence your web related activities will keep getting randomly directed to Osadwarekill.microsoft.com website which looks either like a spoof warning page or like Antivirus System PRO home site – neither is trustworthy.

Aug 24

Bestscanpc.biz Description:

Bestscanpc.biz is a browser hijacker which is known to exist in a few variations. One of the hijacker’s variants is Bestscanpc.biz/win (aka Bestscanpc.biz/xp) which has been maintaining the devastating distribution campaign of Advanced Virus Remover rogue anti-spyware application. The other way Bestscanpc.biz can manifest itself is through the “/disk” extension which stands behind a fake online scanner pushing System Security 2009 fakeware. In either case, Bestscanpc.biz is hazardous because it uses obtrusively aggressive methods to make people install the related rogue anti-spyware applications. Bestscanpc.biz displays a counterfeit scanner detecting tons of threats on the compromised computer and then recommending the victim to install and purchase either Advanced Virus Remover or System Security 2009 scam. As you can see from the snapshots below, Bestscanpc.biz scanners look quite decent and could actually

Aug 24

Antivirus-scannerv12.com Hijacker Description:

Antivirus-scannerv12.com gets on PC users’ nerves by generating false positives which lead to Personal Antivirus fake scanner page. According to the malware classification, Antivirus-scannerv12.com is considered to be a browser hijacker because it employs trojan viruses to manipulate the challenged system’s browser and modify its configuration in a forced manner. Antivirus-scannerv12.com pretends to scan the victim’s computer and eventually claims to locate tons of infections to be exterminated. The trick is – Antivirus-scannerv12.com insists on your buying the license for Personal Antivirus in order to remove the supposedly detected parasites. If you happen to believe and stick to Antivirus-scannerv12.com fraudulent recommendations, you will get yourself a computer pest in the shape of Personal Antivirus rogueware.

Aug 22

Bestantispywarescanv4.com Hijacker Description:

Bestantispywarescanv4.com is a URL which stands for one of the rogue domains distributing Personal Antivirus fake spyware remover. Having altered the browser configuration and the Hosts file, Bestantispywarescanv4.com hijacker makes the infected computer’s web browser hit its domain. As a result, the user’s online activity will be constantly accompanied by Bestantispywarescanv4.com pop-ups and redirections to the bogus scanning page which claims you have a whole bunch of infections inside your system. That scan is sponsored by Personal Antivirus and recommends the user to install the rogueware after the “detection” of all the malicious stuff. It’s important to stay serene and refrain from sticking to Bestantispywarescanv4.com tips, otherwise you may end up getting yourself a good-ol’ scamware which will slow down your system and challenge your privacy by promoting

Aug 22

Osawarepro.microsoft.com Description:

The inglorious fake anti-spyware program called Antivirus System Pro is breaking the day through its Osawarepro.microsoft.com hijacker. Osawarepro.microsoft.com is just another “unique” invention of Antivirus System PRO creators which consists in taking advantage of the Hosts file on the compromised computer and making a scam look like a goodie. The reason why the ‘microsoft.com’ domain extension can possibly show up for promoting a malicious program is – it’s a system trick, nothing more than that. The trojan virus related to Antivirus System PRO malware intrudes on one’s system and forcedly changes the Hosts file to make the browser hit Osawarepro.microsoft.com domain at random periods, even though Osawarepro.microsoft.com does not exist by itself. Within your computer, the malware’s IP address at 91.206.201.8 is mapped to the Osawarepro.microsoft.com URL. Do not fall for that fraud – it’s not nearly as trustworthy as it may look like.

Aug 21

Safeonlinescannerv4.com Hijacker Description:

For the time being, Personal Antivirus pseudo anti-spyware is being distributed on Safeonlinescannerv4.com which is merely one of the hundreds of rogue domains involved in Personal Antivirus promotion schemes. Safeonlinescannerv4.com usually redirects computer users to a bogus security scan that tells them about a variety of parasites detected on the PC. Having found out that your computer is being compromised by an army of malware programs, you are most likely to start seeking a solution to rescue. And that would be a right decision if it weren’t for the unfortunate fact that Safeonlinescannerv4.com advertises a hazardous digital impostor called Personal Antivirus which is unable to detect anything and definitely not capable of removing it. Whenever you get redirected to Safeonlinescannerv4.com and its scanner,

Aug 20

SaveSoldier Description:

SaveSoldier (aka Save Soldier) is a mutated variation of its cyber-predecessors known as SaveKeep, WiniShield, WiniFighter and WinBlueSoft. Inheriting the malware family’s characteristic features, SaveSoldier is just as dangerous, annoying and tricky as its forerunners mentioned above. SaveSoldier infiltration into one’s system is always followed by system reconfiguration resulting in numerous popup ads and system scanners that start by themselves and eventually report imaginary threats which are supposedly located on the host’s computer and need to be immediately handled to prevent the infections from disrupting the Operating System and causing date loss. All the trickeries implemented by SaveSoldier unregistered version (which keeps trying to become a registered one) are put into practice by trojans which stay on the background yet play havoc with the system to trigger all those misleading ads and bogus scanners.

Aug 19

Online-best-scanv3.com Hijacker Description:

Online-best-scanv3.com is one more domain dedicated to promoting Personal Antivirus fraudware. Online-best-scanv3.com displays deceptive ads about spyware and other threats supposedly detected on your PC. Those fake alerts link to Online-best-scanv3.com URL with an extension which displays a completely framed-up scanner sponsored by Personal Antivirus and telling you how about the numerous infections you are alleged to have on board your machine. After a credulous victim’s conscience becomes bedazzled by Online-best-scanv3.com scanner and its false results, the hijacker will offer you to download and register the commercial version of Personal Antivirus which is said to be capable of defending your computer against the malignant infections out there. That’s an entrapment so do not fall for it. You should by no means install Personal Antivirus as recommended by Online-best-scanv3.com hijacker.