Help - Search - Members - Calendar
Full Version: Rogue (fake) Security Software
Gladiator Security Forum > General Security > Latest Alerts on Malware > Link Collections to Malware Threats
Chachazz
Don't fall for it! - Don't download it!

Rogue security software is software that uses malware (malicious software) or malicious tools to advertise or install itself or to force computer users to pay for removal of nonexistent malware. Rogue software will often install a trojan horse to download a trial version, or it will execute other unwanted actions. The first and most comprehensive study of rogue and real antispyware programs was carried out by Eric L. Howes.

The main goal of rogue software makers is to install and sell their product.

In order to attempt to install their program, fake Windows dialog boxes are often displayed attempting to entice the user to click on them. Most of the time, they will display a message such as "WARNING! Your computer is infected with Spyware/Adware/Viruses! Buy [software name] to remove it!", a variant of which will say "Click OK to scan your system" instead of asking the user to outright buy the software. Usually, when the dialog box's OK button is clicked, this will direct the user to a malicious website, which will install the program.

Sometimes, even clicking the upper right hand X button to close the dialog box will produce the same effect. (Pressing Alt+F4 or using Task Manager with Ctrl-Alt-Delete can circumvent that trick). Some software, like SpyAxe will automatically download the trial version without any user action (drive-by installation). Along with the installation of the rogue programs, many sites now attempt to install multiple trojans at one time by downloading what is called a dropper first, which then loads a variety of malware to the computer.

Once installed, the programs rely on several tactics to attempt to entice the user into purchasing a "full" version. These include false positives, downloaded malware, false security alerts and locking various aspects of the system to prevent user changes.....Wikipedia

Partial list of rogue software

http://en.wikipedia.org/wiki/Rogue_software

Chachazz
What to Look For - Rogue Scamware
  • Rogue anti-virus/spyware programs often generate more "alerts" than the software made by reputable companies.
  • You may be bombarded with pop-ups, even when you're not online.
  • High-pressure sales copy will try to convince you to buy RIGHT NOW!
  • If you've been infected, your computer may dramatically slow down.
  • Other signs of infection include: new desktop icons; new wallpaper, or having your default homepage redirected to another site.
Alot of useful information at: ScamBusters.org
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2010 Invision Power Services, Inc.