Author Topic: Rogue - Fake AV  (Read 142236 times)

0 Members and 1 Guest are viewing this topic.

April 13, 2010, 04:13:48 am
Reply #165

crunchtime

  • Special Access
  • Full Member

  • Offline
  • *

  • 54
Rogue AV: hxxp://dwnk.in/appreg70700.exe
VirusTotal: http://www.virustotal.com/analisis/e49775111177cc82f806e378fee7c1f4cf9690e86d4b3d6f81be2f57932b0e85-1271021506
Other details: Directi domain/beavers.helen@yahoo.com

April 17, 2010, 07:20:00 pm
Reply #166

SpiderLover

  • Sr. Member

  • Offline
  • ****

  • 137
Another one from the XP Security Tool family.
Code: [Select]
http://mpprrppmm.com/hh/installer_70108.exe

April 19, 2010, 01:33:07 am
Reply #167

SpiderLover

  • Sr. Member

  • Offline
  • ****

  • 137
Fakesmoke/Virus Protector.
Code: [Select]
http://biteco.co.tv/components/flash_installer.exe

April 19, 2010, 02:21:30 am
Reply #168

SpiderLover

  • Sr. Member

  • Offline
  • ****

  • 137
Another one from the XP Security Tool family:
Code: [Select]
http://tauvrioaa.com/hh/installer_70108.exe

April 19, 2010, 06:26:05 pm
Reply #169

SpiderLover

  • Sr. Member

  • Offline
  • ****

  • 137
Code: [Select]
http://91.188.59.184/main.php?land=44&affid=21700Fake codec page.

April 23, 2010, 01:19:54 pm
Reply #170

SpiderLover

  • Sr. Member

  • Offline
  • ****

  • 137
New rogue TrustDoctor.

Fake Scanner Page.
Code: [Select]
http://callme.rideandbuy.in/?8fa37fbad415d6e9bd7ec4578a177071
Fakesmoke/TrustDoctor.
Code: [Select]
http://filesdownload.in/down/3732f9b31cece5374907f816227c13b3e92fb8cf212a14e06ab464573aae260d4bf11ca41065af3995b4162722f0dbf2a5f50e1e5d77f626b1b8bbcd7cb56a63ff2995bcfb5e2c966c94ebd1fa27c3c011047c8ba3eec0cedf48a9f09ab4940b10e239ea92e299419050247df7f27b7aa2acb5f5b98261a4d73cbfd8ec1b85b6c9dfc82108dca2bd908db707af457f56f56781b8287f8e0967bd41668072adad

April 23, 2010, 03:18:03 pm
Reply #171

SpiderLover

  • Sr. Member

  • Offline
  • ****

  • 137
Fake Scanner Page.
Code: [Select]
http://91.188.59.190/main.php?land=20&affid=12400

May 18, 2010, 08:05:38 pm
Reply #172

cheezer

  • Newbie

  • Offline
  • *

  • 2
www1.bestgardever5.net  - ET TROJAN Potential Gemini/Fake AV Download URL Detected

June 05, 2010, 03:02:17 am
Reply #173

acb

  • Newbie

  • Offline
  • *

  • 1
Fake scanner/Rogue AV downloader "PC_protect.exe"

hxxp://core2958.mylivejournalchanel.com/stget2.cgi?host=host&id=2958