Computer Security : important caveat not all websites are safe

Everyday we’ve seen people get infections on there systems and most don’t understand that they’ve been duped and have installed the software themselves.

In this article we will talk about how most people will willingly install these Trojans and virus themselves for several different reasons.

ineluctable truth about Human Nature

These malware authors know all about how people think.    It usually happens when people think they are seeing something provocative and something you can watch in your private homes.   There are several different ways to do this:

  • News stories —  Alas this is always being used to spread malware.   For example Erin Andrews Peephole malware.
  • Fake photos files — This is also a very common ploy, to make people think it is a Photo but in reality it is an Executable.  Example : MichealJackson.JPG.EXE
  • Fake Codecs — You visit what you think is a popular movie and it says you need to install a codec.  This is another way for people to get infected with a Trojan, or a Virus.   For example : [intlink id=”3739″ type=”post”]Harry Potter and the Half Blood Prince malware[/intlink].
  • Fake PDF’s —  There have been known exploits in the Adobe Reader and Adobe where a malware author can take control over the pc and install whatever they want into the system.  Example : Attackers Target New Adobe Flash/Reader Flaw

As you can see these are just a few but have been used in the past so it doesn’t mean they won’t be used in the future.   The Malware authors will also use Social sites to infect your pc, Here are a few common ones:

  • You get a message that states “[intlink id=”3662″ type=”post”]Look at this[/intlink]” Most of the twitter users were very curious and had not seen alot of malware on twitter and was very trusting, so they would willingly go to these sites not expecting to get a trojan or virus.
  • You get a message in face book “You look just awesome in this video.”  You try to go to the URL and it says You have to update your flash player.   This is another common way to get the user to install a trojan or virus and think it is a legitimate update.
  • Twitter Spambots —  You get a message about a Registry cleaner but it is a rogue Antivurs.  You down load this software and without thinking run it and your infected.   Twitter and facebook users are to relax to see just how dangerous links can be.

Most or all can be used as email also so you don’t have to be on any site to recieved an attached file with something similar to that you see up there.   You must never download anything you know nothing about and if in doubt scan it with several virus scanners by uploading it to Virustotal that is a good site to see if some well known vendors consider this program or file to be a virus. These were just a few, I am sure I have missed several and will probably hear about this from the users. I encourage people to discuss this and talk about other ways this can happen.

I recommend:
[ad#SUPERAntiSpyware]

List of fake Antivirus Sites for July 27, 2009

I have found some other sites that are fake Antivirus:

personalantivirus3

  • anti-malware-pro.com (Rouge AntiMalware Software)
  • allowsecurityshield.com ([intlink id=”3713″ type=”post”]Scareware site[/intlink])
  • securedvirusproscanner.com ([intlink id=”3607″ type=”post”]Personal Antivirus[/intlink])
  • antivirus-best-scannerv2.com ([intlink id=”3607″ type=”post”]Personal Antivirus[/intlink])

Most of these sites try to scare you into either installing software or buying their fake software.   Some of these sites have used exploits to install a Trojan or two to have your browser redirect to these sites.   This means that there might be more than one virus or Trojan on your system

Threat to System : Moderate

[rating:4/5]

Advice : Do a Complete system scan and make sure you don’t have any more hidden malware.

I recommend :

[ad#SUPERAntiSpyware]

Fake Security Adviser from explorersecurityhelper.com

I saw this come in my way and I thought I would share it:

fakeexplorersecurityhelper

Here is a site that is another scareware attempt from the makers of [intlink id=”3607″ type=”post”]Personal Antivirus[/intlink].   They do this to get money from unsuspecting users who think this will protect there system but the truth of the matter, they are either trying to get you to install even more Malware or buy a program that doesn’t do what it claims.   You should never buy from a site you do not know anything about and you should never install software from a site you have no knowledge of

Threat to System : Critical

[rating:5/5]

Advice : Do a Complete system scan and make sure you don’t have any more hidden malware. This has altered your browser and can be monitoring your system and should be taken off your system. You should consider your system compromised until you clean your system.

I recommend :

[ad#SUPERAntiSpyware]

List of Malware Sites for July 26, 2009

personalantivirus3

These malware authors have been busy and made a few new sites to scam people here they are, Remember these sites are active and should be avoided:

  • protectionsystemlab.com ( Scareware Protection System)
  • secure-antivirus-scanv3.com (Personal Antivirus Scareware)
  • scanonlinedirect.com

These sites listed try to get you to download a program sometimes called install.exe, Setup.exe, and are most likely just a way to get you even more infected with malware.  Other sites want to you upgrade which means you probably have some kinda of malware on your system to begin with.   These sites are what I call scareware and will always try to scare you into either buying or installing software.   These sites don’t do anything else but try to make money or get your system infected for them to use.  A couple of these sites require you to quit out of your browser by going to your Taskmanager.   These fake antivirus softwares don’t really protect your system at all but only to annoy the end user into giving these guys a free ride. Two of the sites are now redirecting to Adult Friend Finder, but still should be avoided because of the possibility of an exploit code trying to take over you computer.

Threat to System : Moderate

[rating:4/5]

Advice : Do a Complete system scan and make sure you don’t have any more hidden malware. You never know what else is on your system.

I recommend :

[ad#SUPERAntiSpyware]

List of Malware sites for July 25, 2009

Antivirussystempro1

All Of these sites listed below are active and should not be visited:

  • folder-antivirus-scanv1.com
  • systemsecuritycenter.com
  • sheltercloud.cn (Now Redirecting to Adult Friend Finder)
  • searchav.net (Now Redirecting to Adult Friend Finder)
  • strelyk.info
  • gagtemple.info

These sites listed try to get you to download a program sometimes called install.exe, Setup.exe, and are most likely just a way to get you even more infected with malware.  Other sites want to you upgrade which means you probably have some kinda of malware on your system to begin with.   These sites are what I call [intlink id=”3805″ type=”post”]scareware[/intlink] and will always try to scare you into either buying or installing software.   These sites don’t do anything else but try to make money or get your system infected for them to use.  A couple of these sites require you to quit out of your browser by going to your Taskmanager.   These fake antivirus softwares don’t really protect your system at all but only to annoy the end user into giving these guys a free ride. Two of the sites are now redirecting to Adult Friend Finder, but still should be avoided because of the possibility of an exploit code trying to take over you computer.

Threat to System : Moderate

[rating:4/5]

Advice : Do a Complete system scan and make sure you don’t have any more hidden malware.

I recommend :

[ad#SUPERAntiSpyware]