Page 22 of 46

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Fri Jun 01, 2012 1:52 pm
by hx1997
Live Security Platinum (Winwebsec)

MD5: 69D338C098E42A8EB9D86AB09AA685B3

https://www.virustotal.com/file/c5e408b ... 338558586/

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Fri Jun 01, 2012 3:01 pm
by hx1997
Live Security Platinum (Winwebsec)

MD5: 37FA582FFBC21D53EED54EF8B7D85EBD

0 / 42
https://www.virustotal.com/file/e1aaa0a ... 338562723/

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Sat Jun 02, 2012 2:37 pm
by Win32:Virut
Live Security Platinum (Winwebsec)

Image

MD5: 1D3C98F7F2E65AE66EFF506734FB638A
(330.09 KiB) Downloaded 52 times
https://www.virustotal.com/file/7ae0723 ... /analysis/

_________________________________________________________________________________________________________________________

Windows Malware Firewall (FakeVimes)

Image

MD5: fc6e6abc813548efcc0ad8b79904c04a
(1.84 MiB) Downloaded 52 times
https://www.virustotal.com/file/7cc79b3 ... /analysis/

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Sat Jun 02, 2012 6:04 pm
by Cody Johnston
Live Security Platinum

Vt : https://www.virustotal.com/file/8c899a3 ... /analysis/

MD5: 32766b4f55ddc0296f4933e4e9e3b6b1

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Sun Jun 03, 2012 9:08 am
by Win32:Virut
Live Security Platinum (Winwebsec)
Password: infected
(314.03 KiB) Downloaded 41 times
MD5: 58e54e3718cd47300a9c530f74e2b08d

17 / 42 https://www.virustotal.com/file/1b2007c ... /analysis/

(329.2 KiB) Downloaded 39 times
MD5: 4790d1b9830f184bd675addd3ba642f4

16 / 42 https://www.virustotal.com/file/4219b05 ... /analysis/

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Sun Jun 03, 2012 5:23 pm
by Aleksandra
SmartFixer

MD5: e186c518e0b8dc109e40a6f363d68298
SHA1: b55c90efd959c59fb2260af6698c18e30b4070a5
https://www.virustotal.com/file/d8c9e80 ... /analysis/

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Mon Jun 04, 2012 5:26 am
by thisisu
Image Security Shield 2012
MD5: 246e01f94cb67250585912e21e978137
https://www.virustotal.com/file/1fb0b7b ... /analysis/

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Tue Jun 05, 2012 3:20 am
by thisisu
Live Security Platinum
Winwebsec - MD5: 8b49185f4d60c66af619fbb643176285
https://www.virustotal.com/file/5639d01 ... /analysis/

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Sun Jun 10, 2012 9:06 am
by Xylitol
Blackhole used by the BestAV affiliate
Code: Select all
195.88.74.86/files/f424f
195.88.74.86/files/d4fc7
195.88.74.86/files/cf234
195.88.74.86/files/c5826
195.88.74.86/files/c4672
195.88.74.86/files/c2567
195.88.74.86/files/b6863
195.88.74.86/files/a2e1a
195.88.74.86/files/97d19
195.88.74.86/files/96ece
195.88.74.86/files/9235d
195.88.74.86/files/6d4b0
195.88.74.86/files/5e91c
195.88.74.86/files/5db33
195.88.74.86/files/5a20e
195.88.74.86/files/47bca
195.88.74.86/files/182b5
195.88.74.86/f/t2.php (phpinfo)
Image

Re: Rogue antimalware (FakeAV, FakeAlert)

PostPosted:Sun Jun 10, 2012 7:15 pm
by Xylitol
New file found on the BestAV blackhole but external to the EK
Code: Select all
hihihihiihihihihi.ipq.co/f/1110.exe
• dns: 1 ›› ip: 195.88.74.86 - adresse: HIHIHIHIIHIHIHIHI.IPQ.CO
File in attach.
https://www.virustotal.com/file/e031033 ... /analysis/
https://www.virustotal.com/file/2751ffc ... /analysis/

also fun fact they don't verify instant the credit card and you get the activation code (who don't work by the way)
another fail is the email order received who ask you to put your registration e-mail on a non existant field.
Image