Nov 18

Malware Analysis:

Lamebabe.com is a bad online hub that hosts badware. The function of the site we mentioned is to provide the scareware called Antivirus Action with payment opportunities. If the statement above is not quite clear, allow us to explain this in more detail. Lamebabe.com is a component of malware deployment endeavors. It serves as a web platform for Antivirus Action rogue anti-spyware to get its licenses sold to credulous computer users. People mostly visit Lamebabe.com because of the annoying browser redirects taking place on the infected system. The whole thing starts with Antivirus Action scamware installing itself on to the targeted computer without user approval. After the malicious program gets inside, it displays many popup ads that report unsafe activity on your PC and recommend upgrading to Antivirus Action full version to cope with those corrupt apps. Clicking these fake ads is the moment you get rerouted to Lamebabe.com. The site contains counterfeit user testimonials, misleading overview of Antivirus Action and the payment section where the victim is expected to enter the credit card details and eventually pay for registering the fraud software, thinking that it’s perfectly Ok to have it on the PC. However, all Antivirus Action will do is some brainwashing and more of the false positives about the detection of imaginary malware.

Nov 16

Malware Analysis:

Homecomputertools.net (or Homecomputertools.com) is a web location of the paid version of Antivirus Action rogue security software. It is neither a trustworthy nor a secure site – especially if one takes into consideration the actual mission that it pursues. Homecomputertools.net jacks up the web browser on your computer and persistently diverts your Internet sessions to some payment page that may annoy you into buying the program you surely do not need. The whole trickery of this hijacker is explained by the specificity of the utility it promotes. Antivirus Action is entirely meant for money earning purposes, so it does not do without domains that advise people register the scam app. The underlying technical essence of Homecomputertools.net hijacker lies in the distorted system configuration that gets implemented by Antivirus Action malware. The rogue can substitute some HOSTS file values with some pre-defined URL or turn the Proxy settings upside down. In any case, Homecomputertools.net is not your ally PC defense. This is why you are recommended to stay away from the site and never buy the product it offers.

Nov 10

Malware Analysis:

Since Antivirusstudionew2010.com is a place online exploited by cyber fraudsters for distributing rogue anti-spyware, you should stay away from it at all costs. Antivirusstudionew2010.com actually has lice looks and may produce a positive overall impression but that in no case means it is something you can trust or take for granted. It’s a typical situation when people get redirected to that scam site without any actions on their end. This happens because Antivirusstudionew2010.com had hijacked the web browser and messed up some settings that determine the specificity of the user’s online activity. But one more important thing to keep in mind is these browser diverting sessions are partially caused by a trojan horse associated with the activity of AntiVirus Studio 2010 scareware program. In other words, it’s the rogue that causes this whole unwanted stuff to take place. The fake virus remover under consideration needs its victims to visit websites like Antivirusstudionew2010.com so that payment transactions for its license get completed there.

Nov 07

Malware Analysis:

Neither the appealing design nor the seeming good objectives of Antispylake.com (Antispylake.net) can possibly justify the actual deeds of this sham site. At a closer lookup, Antispylake.com turns out to be a browser hijacker that does many nasty things with the computer system it infected. It’s interesting that you are not likely to go to Antispylake.com unless the related scareware is already on your machine. This hideous application is called Antivirus Action, and it is definitely not a program you want on your PC. Antivirus Action contaminates PCs via backdoors, which allows unauthorized intrusion. Having trespassed on you, the rogue will issue many phony alerts that mislead you about the allegedly poor security status of your system. These are nag warning messages and bogus scans that keep on appearing once you log into Windows. By using this tactic, Antivirus Action may manage to convince you that you got some serious problems with your security and many malware threats. This is how the junk software succeeds in making you hover your mouse over its fake warning notifications and eventually click them.

Oct 28

Malware Analysis:

Antimalwarelist.com virus goes with another malware known as Antivirus 8 which is a fake cleaner program. This sweet couple can really get on your nerves unless you go ahead and set your computer free of their impact. Allow us to specify this a bit. Antimalwarelist.com is a hijacker redirecting one’s web browser to a fake security page and then eventually to a scam payment page distributing Antivirus 8 rogue. The little culprit will have a firm grip of your whole computer system and come to control some processes running their. Antivirus 8 also tends to affect your ability to run applications like legitimate AV tools. Among these, the junkware will be messing with your browser parameters, the diverting to Antimalwarelist.com being an outcome of this. So if you have been hitting Antimalwarelist.com without doing anything for that, it means the hijacker has spread its claws deep in your system. You will not be able to visit sites because Antimalwarelist.com will be constantly popping up instead of every web address you type. In the long run, you’ll be hitting Antivirus 8 payment processing page as Antimalwarelist.com will reroute you there.

Oct 24

Malware Analysis:

Malwareinfolist.com is not on the list of sites recommended for visiting. Just on the contrary, it goes with quite dangerous software called Antivirus 8. The interrelation of Malwareinfolist.com and Antivirus 8 fake malware removal program can be explained in the following way. The former is a hijacker, i.e. a malicious thing that affects one’s Internet browsing. But the core reason for this hijacker’s existence is Antivirus 8 scam which modifies the connection settings and distorts the HOSTS file on the injected PC. Antivirus 8 contaminates computers using some security software vulnerabilities that get located by trojan horses – another type of bad software. The trojans are very tiny and that is their main advantage. They can consequently enter a computer system without being detected and drag the related malicious files inside as well. Once Antivirus 8 is on a PC and active, it will make some dramatic changes to a number of system configuration settings. Whether you notice that or not, you will shortly begin encountering serious malfunctions. First of all, there’s going to be a lot of alerts popping up all of a sudden.

Oct 20

Malware Analysis:

Antispyway.com is a site you should stay away from unless your cyber security means nothing particular for you. The domain we mentioned also denotes a browser hijacker associated with one of the worst threats in the wild today called Antivirus Action. In general, you are very unlikely to get redirected to Antispyway.com unless a trojan virus already sits ‘confidently’ inside your computer. Although this hijacker may be perceived as a standalone parasite, you should know that it is only the top of the main iceberg, i.e. the scareware program that settled down in your workstation with one basic intention – to get hold of your money. On the outside, this malware specimen will show itself in the following way. First off, it substitutes every website you attempt to hit with its own URL. This happens because a trojan horse had earlier modified your browser configuration and possibly the HOSTS file. Another instance of Antispyway.com manifestation on your PC is the browser redirects following each mouse click you may make on fabricated alerts and scan reports from Antivirus Action. You might wonder why this entire thing could be happening to you and your computer.

Oct 17

Malware Analysis:

Do not fall for Antivirnet.com (Antivirnet.net) website although it may appear safe and helpful at first sight. The ultimate truth about Antivirnet.com is it supports the money harvesting practices of the associated rogue security utility denominated Antivirus Action. The two malware items are connected with a firm chain of interdependency. Antivirus Action is a powerful yet malicious instrument for contaminating workstations, and its accomplice (Antivirnet.com) is the place online that helps the rogueware in the framework of receiving payments from deceived victims. And this wicked scheme will work flawlessly unless you realize it’s a scam and do the necessary stuff to eradicate the cyber predators from your PC completely. The symptoms of Antivirnet.com hijacker’s presence on your computer are as follows. When you attempt to visit a website (no matter what it is), you will instead go to Antivirnet.com – to be precise, you will visit the payment tab on it. Another symptom is the constant rerouting to Antivirnet.com following your clicks on the annoying counterfeit alerts and scan reports from Antivirus Action.

Oct 13

Malware Analysis:

Antisywire.com and Antisywire.net are twin websites which are identical in their design and dangerousness. The largest hazard emanating from the listed domains is their being an integral part of Antivirus Action scam which is taking confident paces conquering its segment in the world of rogue anti-spyware applications. Antisywire.com is unlikely to be visited without your computer being infected by the scareware we mentioned. To add some specificity, we believe we should provide some details on this. When landed on your PC through a backdoor, Antivirus Action virus affects a number of system functions. One of those is your browsing. This means you will have some difficulties visiting websites because of the fact that the malware will be constantly substituting the wanted URL with its own IP location. That will be either a fake warning site or Antisywire.com proper. You can also hit Antisywire.com after clicking some popup ad generated by Antivirus Action as it is messing your computer usage up. The reason why the rogueware does that is right there on the surface. It wants you to purchase the licensed version of Antivirus Action. But the program is a fake, remember?

Oct 02

Malware Analysis:

Antivirdrome.com has to do with the malvertising routine, i.e. dishonest promotion of scam software. In fact, Antivirdrome.com is related to Antivirus IS – a rogue security solution that has quite a few bad features aimed at attaining what we call the brainwashing effect. Antivirus IS usually infiltrates a PC with the help of trojan horses that imperceptibly sneak into a computer through backdoors, i.e. poorly protected and vulnerable Operating System spots. Antivirus IS changes the Registry on the infected machine and thus compels the system to trigger its executable during every PC start/reboot. Antivirdrome.com is the site Antivirus IS will be redirecting your web browser to if it does manage to invade your computer following sequence of operations described above. So let’s see what sort of site Antivirdrome.com is and how it can be of help to the associated rogueware. The website under consideration is designed with a touch of quality, and this may become an entrapment for potential victims of the fraud. By the way, you will be hitting Antivirdrome.com upon clicking some fake pop-up alert or a Fix button on bogus scan report generated by Antivirus IS as it is persevering on your computer.