Jump to content
Tuts 4 You

Recommended Posts

Teddy Rogers
Posted (edited)

It's latest iteration is called Virus Sweeper. You can find it here in the following link exactly as described in the article. Please be aware this is fake AV and malware!

xttp://virussweeper-scan.net/?p=nqd2bF6poZ2eXpSWZGNeZ1in12rZpobPoNfFiZOglnPHwLKpl6aaWpmWmqueeqenhXN1

Ted.

Edited by CodeRipper
CodeExplorer
Posted (edited)

Seems that they change the domain very often.

This malware is based on W32.Trojan.Downloader.s read more on http://www.411-spyware.com/remove-w32-trojan-downloader-s

This malware has a lot of brothers:

- Antispywareboss.com read more on http://www.411-spyware.com/remove-antispywareboss

- antivirus-2008-pro.com read more on http://www.xp-vista.com/spyware-removal/an...al-instructions

- securityscannersite.com read more on http://www.411-spyware.com/remove-securityscannersite-com

- winantispyware2008.com read more on http://www.bleepingcomputer.com/malware-re...antispyware2008, on http://www.411-spyware.com/block-winantispyware2008-com or on http://removal-tool.com/winantispyware-2008/

- xpsecuritycenter.com read more on http://www.411-spyware.com/remove-xpsecuritycenter-com

http://www.blogcatalog.com/blog/411-spywarecom seems to give information on a lot of spywares. I love this website.

Edited by CodeRipper
Teddy Rogers
Posted

It is worth downloading and taking a look in a closed environment to see how it works and behaves.

Certainly an up front and bold form of malware but I suspect as the author stated in the article it must catch many unwary internet users out and why it is still being used and developed further...

Ted.

Posted

I've had people call up my work who have had purchased 'anti-virus' software like this before.

Teddy Rogers
Posted

Here is one of the installer builds. Only install this under a closed environment designed for analysis work...

Setup_build8_1003313.zip

Password: tuts4you

Ted.

Posted
Here is one of the installer builds. Only install this under a closed environment designed for analysis work...

Setup_build8_1003313.zip

Password: tuts4you

Ted.

I'll give it a fire up in one of my VM's later.

Eitherway, this reminds me of the days of SpySheriff/Pest Trap.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...