Wednesday, February 10, 2010

Security Antivirus

Security Antivirus

Security Antivirus is the new rogue security application from Virusdoctor rogue family.

Screenshot of Security Antivirus application


Security Antivirus removal instructions here

Bharath M N

Advanced Defender

Advanced Defender

Advanced Defender is a new rogue security application from the System Guard 2009 rogue family. This rogue replaces Personal Protector.

Screenshot of Advanced Defender application from S!Ri's blog


Advanced Defender removal instructions here

Bharath M N

SecurePcAv

SecurePcAv

Thanks to Patrick Jordan of SunbeltSoftware and S!Ri for the info.

SecurePcAv is the latest cloned rogue security application from WiniGuard rogue Family.

Screenshot of SecurePcAv application


SecurePcAv removal instructions here

Bharath M N

Monday, February 8, 2010

Paladin Antivirus

Paladin Antivirus

Paladin Antivirus is a new rogue security application from CoreGuard Antivirus 2009 rogue family. This rogue replaces Malware Defense rogue security application.

Screenshot of Paladin Antivirus splash screen


This rogue contunies the family tradition of attacking legitimate security software. Paladin Antivirus rogue also attempts to uninstall the same set of legitimate security software that this family targets.

  • F-Secure
  • Malwarebytes' Anti-Malware
  • NOD32
  • Agnitum
  • Avira AntiVir
  • avast!
  • AVG
  • BitDefender
  • Sophos
  • Kaspersky

Screenshot of Paladin Antivirus application


Paladin Antivirus displays more fake alert messages and they frequesntly pushes the user to purchase the rogue application.


This rogue also uses MBAM's Signature database like the other members of its family.

Paladin Antivirus removal instructions here

Bharath M N

Sunday, February 7, 2010

SafePcAv

SafePcAv

Thanks to Patrick Jordan of SunbeltSoftware and S!Ri for the info.

SafePcAv is the latest cloned rogue security application from WiniGuard rogue Family.

Screenshot of SafePcAv application


SafePcAv removal instructions here

Bharath M N

Thursday, February 4, 2010

Your PC Protector

Your PC Protector

Your PC Protector is the new rogue security application from the ASC-AntiSpyware rogue family.

Your PC Protector has replaced Windows Police Pro and making the pretty ugly rounds infecting systems.

Screenshot of Your PC Protector application


Your PC Protector removal instructions here

Bharath M N

Wednesday, February 3, 2010

GuardWWW

GuardWWW

Thanks to Patrick Jordan of SunbeltSoftware for the info.

GuardWWW is the latest cloned rogue security application from WiniGuard rogue Family.

Screenshot of GuardWWW application


GuardWWW removal instructions here

Bharath M N

Tuesday, February 2, 2010

Antivirus Soft

Antivirus Soft

Antivirus Soft is new rogue security application from Spyware Protect 2009 rogue security applciation.

Antivirus Soft replaces Antivirus Live rogue security application.


Screenshot of Antivirus Live application


Antivirus Live removal instructions here

Bharath M N

Monday, February 1, 2010

Antimalware Defender

Antimalware Defender

Thanks to Remixed for the heads up

Antimalware Defender is the new rogue security application from Virusdoctor rogue family.

The gang has replaced the routine installation splash screen with a fake System security update window in order to trick the user into thinking that it’s a legitimate System security update.

Screenshot of the Fake System security update used by Antimalware Defender



Screenshot of Antimalware Defender application


Antimalware Defender removal instructions here

Bharath M N

The Chameleon Rogue

The Chameleon Rogue

Special thanks to all the folks @ MBAM

Recently our friends at MBAM discovered a new rogue security application from Braviax rogue family.

Like a Chameleon the rogue has the ability to change the name of the application based on system environment.

List of rogue names used by this rogue variant on Windows XP

XP Guardian
XP Antivirus Pro
XP AntiSpyware 2010
XP Internet Security
XP Internet Security 2010
Antivirus XP 2010


Screenshot of XP Internet Security 2010 application

List of rogue names used by this rogue variant on Windows Vista

Antivirus Vista 2010
Vista Antispyware 2010
Vista Guardian
Vista Antivirus Pro
Vista Internet Security
Vista Internet Security 2010


Screenshot of Vista Guardian application

List of rogue names used by this rogue variant on Windows 7

Win7 Guardian
Win 7 Antivirus Pro
Win 7 Antispyware 2010
Win 7 Internet Security
Win 7 Internet Security 2010



Screenshot of Win 7 Internet Security application


Screenshot of other rogues applications here and the removal instructions of these rogues can be found here

Bharath M N