Sep 29

Malware Analysis:

What have you heard or known of Security Sphere 2012 application before? No matter what it was, we bet it was nothing good. There are several very relevant causes for this statement of ours. The traits of Security Sphere 2012 testify to its common roots with the Personal Shield Pro fake antivirus software. Likewise, it scans your computer just like a real PC cleaner but that’s only what the whole process looks like. In fact, the scan does not reveal any true facts about how your system is functioning for the moment and whether or not it has spyware on board. Security Sphere 2012 reports the things you don’t actually have. Those are pseudo worms, so-called adware, signs of spyware and similar bad notices for any average user. The good news is you don’t have the issues returned in this program’s scan results and the ads it displays. As always, there’s some bad news at the same time though. There’s something else Security Sphere 2012 wants from you, apart from the animated cartoons (we mean the scans and the false positives) it keeps triggering on you.

Sep 28

Malware Analysis:

Some malign attributes of Advanced PC Shield 2012 software are laying right there on the surface. It completely ignores the authorization guidelines during the install procedure and furthermore gives you a totally wrong overview of your operating system’s safety level. The instruments employed are numerous phony scanners and other sorts of false positives that will, sadly enough, become an inalienable part of your cyber life since the onset of this malware. Advanced PC Shield 2012 is basically non-typical in terms of the regular AV software activity, and very typical as a rogue anti-spyware client. Therefore when you see a scan with this program’s name on top of it, do not make a common mistake and never take the reported data for granted. The badware will be repeatedly saying you got problems like adware, trojan horses, spyware, keyloggers and a bunch of other disgusting stuff that you don’t want on your computer. Well, if those threats were on your machine for real, it would definitely make sense to get rid of them all.

Sep 15

Malware Analysis:

In terms of virus making and distributing industry, Security Defense is a cutting-edge invention being a powerful machine harvesting generous fees paid by credulous PC users. One should distinguish between the superficial features of this potentially dangerous application and its underlying face. The former is the lure, i.e. it serves for attracting people to join in the hypocritical games imposed by the black hats of computer world. Indeed, the cover is nice and Security Defense does look pretty glowing at first sight. However, when it comes to the bottom part of the iceberg you will be disappointed since it becomes incredibly hard to find something genuine in this program. Everything is phony about it: starting from the scanners and other positives and finishing with the obtrusive recommendations about your purchasing obligations. What is worse, it’s difficult to keep all of this from happening because Security Defense employs cunning rootkit methods to install itself. Its malicious code gets on your PC totally unnoticeably in most cases, aggravating the entire situation further.

Sep 13

Malware Analysis:

Meet PC Security Pro – a piece of devastating rogue security software calling forth unexpected and harmful consequences for your computer unless treated on time as a virus. The bad potential of this application should not be underestimated because it does not only annoy you but also does certain things that may damage your Operating System’s integrity. The fakeness of PC Security Pro consists in the right looks as for an antivirus tool but definitely the wrong activities it was programmed to implement. You should not have any particular illusions about your computer’s being properly protected against this infection. Even a reliable security client installed on a machine does not fully guarantee complete defense from this scareware as its signatures may update on a daily or even hourly basis so that legit AVs fail to detect it during infiltration. When the job of breaking inside your workstation is done, PC Security Pro normally gets down to changing your Registry and creating new files without delay.

Sep 06

Malware Analysis:

OpenCloud Security (aka Open Cloud Security) is a program whose wicked intensions make it a disastrous threat you sure don’t want to encounter in your cyber life. It’s too bad people have hardly any influence on whether this application enters their computers or not. The spontaneous attack of OpenCloud Security is something you never expect and often an event you are unaware of until the tangible aspects of its residing on your machine show themselves. You won’t miss those. It’s the scanners popping up on you and returning unexpectedly troubling results, as well as the occasional pop-ups (usually system tray notifications) that confirm your supposed critically low virus protection level. It’s interesting that all the ads by this unsafe software override the other processes running. In other words, OpenCloud Security somehow becomes the highest priority executable, leaving Windows apps behind and even blocking them. This can be explained by the Registry changes made by the scamware on the first stage of the intrusion.

Aug 27

Malware Analysis:

Whenever OpenCloud Antivirus finds itself on a random PC, it eventually claims “Windows is in danger”. That’s right, it actually is, but not due to the infections this fraud tool detects on your machine. OpenCloud Antivirus is already quite a peril by itself. It is a counterfeit antimalware solution that features some useful services it will never provide. The rogue AV industry has been the most profitable enterprise in the malicious underworld of computers for the last several years. After a several months long relative lull, this routine seems to be undergoing a revival to some extent, the appearance of OpenCloud Antivirus being a direct proof of that. When this unwanted software plants its code on your system, it begins affecting it in multiple ways, which pretty much spoils your user experience. There will be strange scanners appearing out of nowhere and some pop-ups with alarming notices. Through this ad medium, OpenCloud Antivirus tries to deliver the idea that your workstation is severely impacted by the multiple viruses it has.

Aug 19

Malware Analysis:

Although Home Safety Essentials is likely to give you a positive impression after it’s the first moments of its stay on your workstation. It looks kinda nice and basically repeats the main external features of an average antivirus solution. That is the superficial stuff only though. Home Safety Essentials critically differs from a random security client in that it does not have the engine that is supposed to enable it to find, quarantine and delete viruses. What you see is just the shallow contour that has nothing to do with the real malware protection functionality. Home Safety Essentials uses the same old tricks to persuade users it can do something. It triggers startup system scanners that actually mimic virus checking and have the main scan attributes such as the progress bar and of course the reports that appear at the end of the process. The stunning news brought about by these scanners is not something you are going to like. Home Safety Essentials thus informs you that something is amiss with your machine, listing numerous threats like spyware, keyloggers, trojan horses, worms, adware etc.

Aug 14

Malware Analysis:

Wolfram Antivirus is a hateful rogue anti-spyware product that programmed and trained to make use of people. It is a near clone of BlueFlare Antivirus that we described in mid-July. How are these two programs different? Barely – because they even have the same user interface with just a new name on it. Just like the predecessor, Wolfram Antivirus finds an easy way into your computer by means of exploit-based techniques, which enables the scareware to do without your authorization when installing. The next move is to give you a view of your system’s safety level under a really distorted angle. The badware kind of scans your PC and then says you have serious virus problems. Wolfram Antivirus enumerates trojans, keyloggers, malware, viruses and other nasty threats on your machine and subsequently insists that you take some measures to lose those. It pretends to be helpful by offering you a cynical deal – you buy its commercial version, then things will go fine and your PC will be liberated of the infections upon a smooth cleaning procedure.

Aug 11

Malware Analysis:

Personal Security Pro means anything but real professional security in terms of computers. This is a sample of malicious software we confidently classify as ‘rogue’ because it is a remake of an average legal antivirus, only it cannot possibly do a thing for protecting your PC against unsafe objects (which automatically makes it a dummy tool that’s incapable of doing the job). Perhaps the only thing Personal Security Pro is truly sophisticated at is how to infect a system and moreover do it without any hints of authorization by the user. The typical case is a trojan-helped intrusion taking place when you accidentally push a malware loaded link on the web, or click some banner or other kind of advertisement bearing deceptive info about an attractive yet non-existent product. The trojan will thus hop into your machine, bypassing the firewall and sometimes even tricking the security software you are using. This being done, Personal Security Pro will attend to implementing its on-PC campaign, running false scanners and displaying dozens of positives that are deceptive by all means.

Aug 09

Malware Analysis:

The name of Personal Pro System software implies professional approach to computer protection. Yeah right! This is just the illusion the creators of this program definitely meant to create. In fact, Personal Pro System is a rogue application, with all due conclusions to draw from this. It does not need any sort of user approval for installation to take place. Instead, the intrusion is just an outcome of the unpleasant and completely stealthy procedure. The virus gets in with a trojan that serves as an installer but differs from the regular installers in that it downloads the files on to the infected computer secretly. When Personal Pro System gets on your machine, it performs a couple of manipulations right away. These include some changes to the files such as .lnk items and executables consisting of random combinations of symbols varying across different contaminated workstations. This won’t be all to the addition of bad objects. There will appear some new Registry values that aim to command your system to run the bad processes at startup, thus influencing the activity of your PC all the way.