Page 6 of 6

Re: Rogue Antimalware (FakeAV, 2014 year)

PostPosted:Mon Dec 01, 2014 10:02 am
by Xylitol
A-Secure
Another sample...
https://www.virustotal.com/en/file/5ed4 ... 417427547/
Fraudulent payment processor for fake antivirus:
Code: Select all
http://stormo10.com/3qONoCkGCd5jFkZTY3YeleZWpqbY5QOq8PmAyJ4PWQ==
https://www.virustotal.com/en/domain/st ... formation/
---
Zorton
Requested.
https://www.virustotal.com/en/file/3c89 ... 417429504/
Fraudulent payment processor for fake antivirus:
Code: Select all
http://stormo10.com/LdgALDIGCd5jFkZTenYeleZN5IfJ6Rj4zYmSucFOMDK7jH5DhEsQ3YKcaBFwOzeFpkR8

Re: Rogue Antimalware (FakeAV, 2014 year)

PostPosted:Mon Dec 01, 2014 2:43 pm
by Grinler
Thanks Xylitol.

Re: Rogue Antimalware (FakeAV, 2014 year)

PostPosted:Wed Dec 03, 2014 2:25 pm
by karolis
AVbytes Win 7 Antivirus 2015 sample working right now
VT: 55806f8d10acda611dd291fd7ef9205cc5e3845cbfbb44de298387724d979f9c

Re: Rogue Antimalware (FakeAV, 2014 year)

PostPosted:Thu Dec 11, 2014 10:48 am
by karolis
Another variation of the same FakeRean rogue GuardBytes Plus

434183f7213f1aa1445e925eaf4cb254104daeaad9e972fa33ed2094915174d1

Re: Rogue Antimalware (FakeAV, 2014 year)

PostPosted:Fri Dec 12, 2014 3:27 pm
by FafZee
GuardBytes Plus:
5b7d7c79786b0461dfd0f6ac144ab03374ee5608062d547f21e3b4c2eb13f50f

Re: Rogue Antimalware (FakeAV, 2014 year)

PostPosted:Tue Dec 16, 2014 2:17 pm
by TK_
AVC Plus Rogueware
0bfbd383709390fdb0e442d42bcf9224

Re: Rogue Antimalware (FakeAV, 2014 year)

PostPosted:Wed Dec 17, 2014 1:47 pm
by karolis
another FakeRean "AVLab Internet Security" sample (name identical to Emsisoft :D )

Re: Rogue Antimalware (FakeAV, 2014 year)

PostPosted:Tue Dec 30, 2014 9:27 pm
by Blaze
Another sample of AV Lab Internet Security.

Re: Rogue Antimalware (FakeAV, 2014 year)

PostPosted:Thu Feb 19, 2015 9:40 am
by EP_X0FF
FakeAV/FakeAlert observed and collected in the 2014 year.

Please post any new samples in actual thread.

This thread now archived.