Mar 17

Threat Description:

XP AntiMalware 2010, also referred to as XP AntiMalware, is a hazardous computer application emanating from the Windows Defender 2010 scareware group. The scattershot propagation of XP AntiMalware 2010 owes its success to Trojan.Downloader that drops the initial malicious files onto a potential targeted system in a very stealthy way. It suffices for XP AntiMalware 2010 to have some files embedded into the to-be compromised OS to grow into a big menace in the long run. It will typically make its way to Windows Registry and modify some entries, concurrently adding some of its own keys in there. Such simple yet deep manipulations with your system will eventually impose virtually unlimited control of XP AntiMalware 2010 over its functioning. You will then start receiving some popup messages that notify you about multiple security risks residing on your computer (purportedly). But in fact there are no such infections and security issues on your machine. XP AntiMalware 2010 is faking it trying to make you believe it is really doing something to find and help you delete all of your PC threats.

Mar 16

Threat Description:

The program called Total XP Security is something to stay clear of. It sounds like a helpful anti-malware tool but turns out to be a fake one in the long run. Total XP Security is a part of the so-called Windows Defender 2010 family which has produced around ten rogue antivirus applications during the past few months. You may be unaware how and when exactly Total XP Security got on your computer – this is due to the fact that it finds some bypassing methods to sneak into your system without your knowledge and approval. Total XP Security gets rather aggressive as it runs on your PC. It will display multiple virus detection reports and warning messages which are all meant to scare you. This rogue anti-spyware tries to use horrifying malware interception reports just to intimidate people and make them confused. This is needed for Total XP Security to ‘successfully’ insist that you purchase its licensed copy in order to help your computer get out of the spyware mess it has allegedly found itself in.

Mar 15

Threat Description:

Total Vista Security is a counterfeit spyware remover that takes over your computer having appeared out of the blue, as it may seem. Total Vista Security has been quickly spreading with the aid of backdoor downloader trojans that appear to be bundled to purportedly harmless files or come with scripts on insecure websites of questionable origin. Total Vista Security will typically show up on your workstation without any prior notice, i.e. it doesn’t ever ask for user permission before unleashing its malcode. Having intruded, Total Vista Security damages your Registry hence it virtually paralyzes your system as you knew it. This rogue antivirus application will display loads of popup warnings on your computer telling you that it has found a certain number (usually 32) trojans and other hazardous infections. This is just he beginning though. When active, Total Vista Security gets even nastier and runs fabricated security scanners that pretend to check your system for viruses and return admittedly fake results in the end.

Mar 15

Threat Description:

Having W32.Palevo (alias Palevo worm) malware on your computer, you are likely to stumble upon some serious system malfunctions and get your privacy endangered. The bulk of W32.Palevo worm’s impact on a random Operating System is concentrated on your security protection, i.e. the antivirus software you have on board your PC. W32.Palevo tends to disable the usage of actual antivirus tools so that the removal procedure gets much aggravated. W32.Palevo spreads owing to shared networks and infected file attachments. So anyone is potentially exposed to the unannounced intrusion of this nasty infection. Unlike the vast majority of worms, W32.Palevo changes the Registry and therefore makes your system run malicious executables upon each startup. Along with this, W32.Palevo usually helps additional malware enter your computer without any particular obstacles. Another bad part of W32.Palevo nature consists in the fact that it populates the injected system with enormous speed through a sophisticated self-replication procedure.

Mar 15

Threat Description:

Securitypccare.com is a sleek-looking website that assists Windows Defender 2010 rogue antivirus application in its advancement. Securitypccare.com is a site one gets rerouted to, if his/her computer gets attacked by Windows Defender 2010 or one of its related fake anti-spywares (e.g. Antivirus XP 2010). Like with any browser redirect activity, it’s all based on trojans’ work which results in forced browser settings modification. Securitypccare.com appears in a browser window if you happen to click one of Windows Defender 2010 ads generated to scare you into believing something is really amiss with your computer. So basically Securitypccare.com browser redirect issue is derivative from the impact Windows Defender 2010 rogueware impairs to your system. In any case, the malicious trial version of the rogue security application, as well as the affiliated trojans, must be quickly found and disabled.

Mar 15

Threat Description:

To derive some basic information about the essence of Trojan.Fakepop.A infection, it suffices to read its denomination carefully. This trojan virus is capable of compelling the infected Operating System to display admittedly misleading alerts that encourage people to download potentially unwanted software such as rogue antivirus programs and similar malicious entities. Trojan.Fakepop.A infiltrates one’s computer without the user’s knowledge and consent. It is spread being disguised as useful applications such as codecs that are allegedly needed for some online multimedia streaming content to be displayed. Trojan.Fakepop.A is also using contagious Email letters triggered by bots, i.e. automated systems that generate outbound traffic in the shape of unsolicited spam. When Trojan.Fakepop.A gets into your machine, it can alter system settings and affect the Registry so that bad processes get executed as you are using your workstation. Trojan.Fakepop.A is able to harvest the personal information stored on your PC.

Mar 14

Threat Description:

Trojan.Remetrac.A won’t leave your system alone until you get rid of it for good. Trojan.Remetrac.A infiltrates your computer system through a number of techniques, backdoor intrusion and vulnerabilities exploiting being the prevalent tactics. This disgusting trojan horse is quite good at modifying system parameters, generating dishonest ads of various kinds and affecting the browser functionality. Trojan.Remetrac.A hijacks the web browser being used on a PC in question and redirects it in a randomized forcible way. Trojan.Remetrac.A may as well delete or alter some files stored on the compromised workstation. Also, Trojan.Remetrac.A is very likely to upload additional infections onto your machine. When tackling Trojan.Remetrac.A and trying to exterminate it, you will be sure to run into complications in case you choose to do it manually. The files and Registry values associated with Trojan.Remetrac.A will reappear after you delete them so this type of this malware deletion is insufficiently effective.

Mar 14

Threat Description:

The ever-replenishing multitude of stealthy infections has recently got reinforced by yet another one of its members called Trojan.Win32.Pincav.oqd. This Trojan horse is in the wild searching for potentially vulnerable networks to inject. Trojan.Win32.Pincav.oqd is propagating via shared networks and contagious Email attachments that come as bots-originated spam. This parasite would probably not be hazardous on its own because it cannot really affect the compromised system all by itself. The biggest risk emanating from Trojan.Win32.Pincav.oqd lies in its capability to upload other infections that flood the OS thanks to the assistance of the trojan virus under consideration. Trojan.Win32.Pincav.oqd tends to explore the challenged Operating System for various exploits and splits of the software installed thereon. This is namely the prevalent function in Trojan.Win32.Pincav.oqd activity. Figuratively speaking, it opens the door for spyware, other trojans, worms and rogue antivirus knocking on your system’s gateway.

Mar 14

Threat Description:

Info-protector.com is a small section in the complicated mechanism of Antivirus Soft scareware propagation. It contains a payload option suggesting people who visit it to buy the worthless and quite mendacious program we have mentioned above. Info-protector.com is identified as a browser hijacking entity that gets hit only in case you get rerouted there. In other words, Info-protector.com is driven traffic to owing to the pranks of Antivirus Soft fake security application if it infiltrates your computer system. All the multiple popup notifications generated in great quantity by the affiliated malware make you end up on Info-protector.com where you see some really uncomforting suggestions all of which are bound to making you waste some bucks for something that won’t do you any good, i.e. Antivirus Soft fraud. Whenever you encounter Info-protector.com web page and if you are not sure why you actually got there, be aware you’ve got some more serious issues to resolve.

Mar 14

Threat Description:

PC-Inspector.net (or PC-Inspector.microsoft.com) is an impersonation of one of Antivirus Soft rogue anti-spyware’s intricacies aiming to arrive at its pre-determined malignant milestones. PC-Inspector.net is target web page Antivirus Soft redirects its victims to. It is associated with fraudulent payment (billing) system so it is completely fit to maintain the commercial aspect of Antivirus Soft scareware campaign. If Antivirus Soft scareware happens to inject your system, it makes your web-surfing impossible as it jacks up your browser and replaces every site you want to hit with PC-Inspector.microsoft.com which is an improvised IE warning page. This is done through some manipulations with your system settings that have to do with network connections. The virus distorts Windows HOSTS file and thus makes you hit PC-Inspector.microsoft.com at random. In order to prevent this from taking place, you need to disable and completely neutralize Antivirus Soft rogueware which is taking over your workstation to eventually ruin it unless you pay some money for its license unknowingly supporting the international hacking endeavors.