Webmaster Forum

Go Back   Webmaster Forum > The Webmaster Forums > Tech Support Forum

Tech Support Forum Discuss computer issues, tech gadgets and hardware, operating systems, browsers, broadband and wireless, virus, trojan, and spyware help.


Reply
 
LinkBack Thread Tools Display Modes
Old 08-27-2008, 09:09 PM   #1 (permalink)
Super Moderator
 
StarLab's Avatar
 
Join Date: 10-29-07
Location: Ontario, Canada
Posts: 2,765
iTrader: 0 / 0%
StarLab is a web professional of the highest orderStarLab is a web professional of the highest orderStarLab is a web professional of the highest orderStarLab is a web professional of the highest orderStarLab is a web professional of the highest orderStarLab is a web professional of the highest orderStarLab is a web professional of the highest orderStarLab is a web professional of the highest orderStarLab is a web professional of the highest orderStarLab is a web professional of the highest orderStarLab is a web professional of the highest order
Send a message via MSN to StarLab Send a message via Yahoo to StarLab
ALERT! AntiVirus 2009 and MS Antivirus 2008 FAKE

I just spent the last several hours cleaning someone's computer of these nasty little intrusions. (User will remain anonymous due to being gullible. lol)

The first thing to blow my mind was the fact this computer appeared to be running 3 antivirus programs. <<<Insert Disaster Movie flashback here>>> McAfee plus these 2 fakes. I envisioned an OS re-install but it didn't come to that.

First off, I'll point you to the Google results for both of these. Most sites say the same thing about them, so just pick one and read the overview...

http://www.google.ca/search?hl=en&q=...G=Search&meta=

http://www.google.ca/search?hl=en&q=...e+Search&meta=

I should point out that the official version of MS Antivirus (by MicroSoft) has been discontinued for some time now. This new one is a fake but looks like an official MicroSoft (XP?) product.

Most of these Google Results deal with the removal of these nasties, so if you recognize these trojans on your computer, you'd best take those steps to deal with it.

One endearing feature of these programs is they detect hundreds of (fake) infections. Trojans, backdoors, viruses, you name it. Certainly enough to scare the casual computer user. But wait! There's a "fix" button! Press it and you're asked to pay $49.99 to get the "full" version so you can remove all these (fake) infections.

The owner of this computer has not only given these bandits $49.99, but also all his credit card info. He hadn't paid for the latest McAffee and thought that was who he was paying. When I left his house, he was about to call and have the card cancelled and the charge reversed. Keep in mind this person I removed these for isn't the most computer-savvy person, but certainly knows enough not to install strange stuff from websites onto his computer. Somehow, it managed to slip in. (Apparently embedded into a video codec that he doesn't remember installing)

These fake virus alerts may not happen right away either. The MS Antivirus 2008 I came across had not activated yet. It was still showing 0 detections. Only the Antivirus 2009 was showing alerts at this point. Given enough time the MS Antivirus 2008 would've come to life to do the same thing.

The owner said he called the store where he bought the machine to see if he could get it fixed. They said they couldn't look at it right now as they already had over 50 machines in line for the bench with the same problem. I'm guessing a lot of the less computer-savvy users are falling for this scam.

Quite a few of the blogs listed in the above Google searches have hundreds of comments from people infected with these and have paid out money.

Hopefully my posting about this will save someone the 3 hour aggrivationFest I just went through.
__________________
Larry Monte
[Torn Elements] - Regaining the Passion for Design
[Gorgeous On Life] - The world from a Cat's point of view.

"Writing is the most fun you can have by yourself!" -Terry Pratchett

Last edited by StarLab; 08-27-2008 at 09:44 PM..
StarLab is online now  
Add Post to del.icio.us
Reply With Quote
Old 08-27-2008, 09:30 PM   #2 (permalink)
v7n Mentor
 
zeruel's Avatar
 
Join Date: 03-28-07
Location: SouthEast
Posts: 3,519
iTrader: 0 / 0%
zeruel is a web professional of the highest orderzeruel is a web professional of the highest orderzeruel is a web professional of the highest orderzeruel is a web professional of the highest orderzeruel is a web professional of the highest orderzeruel is a web professional of the highest orderzeruel is a web professional of the highest orderzeruel is a web professional of the highest orderzeruel is a web professional of the highest orderzeruel is a web professional of the highest orderzeruel is a web professional of the highest order
Send a message via Yahoo to zeruel Send a message via Skype™ to zeruel
Oh crap! Glad I didn't purchase an antivirus program... Thanks for the info Larry! I feel sorry for the victims of this scam...
__________________
Car Pics And Reviews
Non Conforming Loan
"You are my exact brand of heroine..."
zeruel is offline  
Add Post to del.icio.us
Reply With Quote
Old 08-27-2008, 09:38 PM   #3 (permalink)
v7n Mentor
 
C.Whyte's Avatar
 
Join Date: 02-06-06
Location: Santa Cruz, CA
Posts: 1,136
iTrader: 3 / 100%
Latest Blog:
None

C.Whyte is just really niceC.Whyte is just really niceC.Whyte is just really niceC.Whyte is just really niceC.Whyte is just really niceC.Whyte is just really niceC.Whyte is just really niceC.Whyte is just really niceC.Whyte is just really niceC.Whyte is just really nice
Leave it to the scammers to trick users when they are trying to protect themselves. Thanks for the heads up... hopefully it helps some people out.
__________________
C.Whyte For President
Coupon Phonics <-- Hopefully someone gets it lol
C.Whyte is online now  
Add Post to del.icio.us
Reply With Quote
Old 08-28-2008, 10:36 AM   #4 (permalink)
Contributing Member
 
Luckyman's Avatar
 
Join Date: 02-11-07
Location: http://www.dairyforall.com
Posts: 1,090
iTrader: 0 / 0%
Luckyman is a jewel in the roughLuckyman is a jewel in the roughLuckyman is a jewel in the roughLuckyman is a jewel in the roughLuckyman is a jewel in the roughLuckyman is a jewel in the roughLuckyman is a jewel in the roughLuckyman is a jewel in the rough
Thanks for the info, Mr.StarLab; I need not purchase the antivirus program because I use the free avast home edition
Luckyman is offline  
Add Post to del.icio.us
Reply With Quote
Old 08-29-2008, 02:28 PM   #5 (permalink)
Junior Member
 
Join Date: 06-21-06
Posts: 21
iTrader: 0 / 0%
Latest Blog:
None

Gareth is liked by many
Quote:
Originally Posted by StarLab View Post
I just spent the last several hours cleaning someone's computer of these nasty little intrusions.
Ditto - I spent a few hours the other night cleaning my cousins PC because he signed up for 'Antivirus 2008'. Some people are hard to believe.
Gareth is offline  
Add Post to del.icio.us
Reply With Quote
Old 09-01-2008, 04:13 AM   #6 (permalink)
Contributing Member
 
raphnix's Avatar
 
Join Date: 08-19-08
Location: Everyone's Heart
Posts: 1,350
iTrader: 0 / 0%
raphnix is a splendid one to beholdraphnix is a splendid one to beholdraphnix is a splendid one to beholdraphnix is a splendid one to beholdraphnix is a splendid one to beholdraphnix is a splendid one to beholdraphnix is a splendid one to beholdraphnix is a splendid one to beholdraphnix is a splendid one to beholdraphnix is a splendid one to beholdraphnix is a splendid one to behold
Send a message via Yahoo to raphnix
That was too bad for those who have been scammed.
Though your post might help some of us here in the forum, maybe some could have the initiative to warn others who are not informed yet.
raphnix is offline  
Add Post to del.icio.us
Reply With Quote
Go Back   Webmaster Forum > The Webmaster Forums > Tech Support Forum

Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
The best antivirus protection Kalina Tech Support Forum 187 11-20-2009 11:49 PM
Antivirus Nepopec Tech Support Forum 54 09-03-2008 05:41 AM
Which AntiVirus do you use? Sexy Sania Tech Support Forum 80 08-08-2007 01:42 AM
Best Antivirus Software Buskerdoo Forum Lobby 37 01-12-2005 09:45 AM


Sponsor Links
Get exposure! Contextual Links V7N SEO Blog V7N Directory


All times are GMT -7. The time now is 05:04 PM.
© Copyright 2008 V7 Inc
Powered by vBulletin
Copyright © 2000-2009 Jelsoft Enterprises Limited.


Search Engine Optimization by vBSEO 3.3.0 ©2009, Crawlability, Inc.