IE9 new scareware protection

johnwillyums

New member
Guru
Gold Member
VIP
Local time
11:30 PM
Messages
4,286
Location
Colne, Lancashire, UK
I know dear old Ed Bott is a confirmed MS man but this is an interesting article about how browsers deal with "social engineering" attacks'
It's comparing IE9 with Chrome and it appears that IE9 is ahead of the game with this form of attack.
I though it was interesting and useful to read whatever your browser preference:)

IE9 versus Chrome: which one blocks malware better? | ZDNet
 

My Computer My Computer

Computer Manufacturer/Model Number
The Monolith. 3.1
OS
Windows 7 Home Premium 64 bit
CPU
i7 [email protected]
Motherboard
Gigabyte Z77-D3H
Memory
2x4GB Corsair Vegeance DDR3
Graphics Card(s)
XFX GTX 260 Black Edition
Sound Card
none-through large stereo hi fi
Monitor(s) Displays
Croosover 27MDP LED IPS Dell 2408 WFP
Screen Resolution
2560x1440 1920x1200
Hard Drives
1x Samsung 840Pro 128GB SSD
1x Samsung Spinpoint F1 1TB
PSU
Corsair AX 850 Watt
Case
Cooler Master ACTS 840
Cooling
Be Quiet! Dark Rock Pro
Keyboard
Enermax Aurora
Mouse
Logitech Ballmouse
Internet Speed
20MBPS
......

People fall for that?
The Google Chrome boxes were OBVIOUSLY not from Chrome, seriously.

Though I will give it that, IE9 apparently has an annoyingly good warnings program. Chrome could step it up a tad.

~Lordbob
 

My Computer My Computer

Computer Manufacturer/Model Number
Hera
OS
Windows 7 Ultimate x64, Mint 9
CPU
Intel i5-2500k
Motherboard
ASUS P8P67 Pro
Memory
2x 4Gb Corsair VENGEANCE DDR3-1600
Graphics Card(s)
NVidia GeForce N260GTX Twin Frozr
Sound Card
Realtek HD OnBoard Audio
Monitor(s) Displays
ASUS 24" Monitor
Screen Resolution
1920x1080
Hard Drives
G.SKILL Phoenix Series 60GB SATA II MLC Internal Solid State Drive (SSD)
SAMSUNG Spinpoint F3R 1TB 7200 RPM 32MB Cache SATA II
PSU
Cooler Master Real Power Pro 750W
Case
Cooler Master Haf 932
Cooling
Fans
Keyboard
Razer Tarantula
Mouse
Razer Lachesis
Internet Speed
not fast enough
unfortunately to the unwitting scareware popups can be quite alarming.

my girlfriend's grandma completely freaked out over one (on a mac nonetheless) and is convinced she has a virus and will now pay money for a mac technician to look at it.

I also noticed and don't know how this happened. But my gf got one and somehow her browser was set to open that tab and site when she re-opened the browser, bringing up the false warning every time she opened her browser (FF4).

I could be mistaken about the tab thing, not sure how that came about - but it had her concerned for a moment as well.
 

My Computer My Computer

OS
Windows 7
......

People fall for that?
The Google Chrome boxes were OBVIOUSLY not from Chrome, seriously.

Though I will give it that, IE9 apparently has an annoyingly good warnings program. Chrome could step it up a tad.

~Lordbob
Unfortunately they do LB. In another post I mentioned a lady friend of mine who opened some page which had a flashing banner ad "CLICK ME", which she of course started to do. I warned her not to since it could be some bad program or virus. Her reply? "But it says click me!" <whistles innocently>
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Home Built Desktop By DataTech
OS
Windows 7 Ultimate X64 SP1
CPU
Intel i5-2550K, Differing ~4.4-4.8GHz No built in GPU
Motherboard
ASUS P8Z68-V PRO/GEN3
Memory
16GB G.Skill Sniper 1866MHz @ 2133MHz 2x8GB
Graphics Card(s)
ASUS GTX650TIB-DC2OC-2GD5, (650TI Boost)
Sound Card
Onboard Realtek 5-1
Monitor(s) Displays
Samsung P2570HD
Screen Resolution
1920x1080
Hard Drives
Samsung 840 Pro 256GB SSD for OS, 500GB Seagate Constellation (Enterprise drive) for Data
PSU
Corsair HX650W
Case
Inwin Dragon Rider
Cooling
Hyper 212 EVO w/two Noctua fans, push-pull, @1300 RPM
Keyboard
E-Z Eyes, bright yellow keys with large characters
Mouse
steelseries SENSEI Laser Pro Gaming
Internet Speed
48-51Mbs Mbs down, 11 Mbs up Xfinity Cable
Antivirus
Norton Internet Security 2013
Browser
IE 10, Opera, Pale Moon if needed
Other Info
4 case fans, LG BluRay-RE, ASUS DVD-RW, Mr. Fusion power supply, 1.21 gigawatts.
......

People fall for that?
The Google Chrome boxes were OBVIOUSLY not from Chrome, seriously.

Though I will give it that, IE9 apparently has an annoyingly good warnings program. Chrome could step it up a tad.

~Lordbob
Unfortunately they do LB. In another post I mentioned a lady friend of mine who opened some page which had a flashing banner ad "CLICK ME", which she of course started to do. I warned her not to since it could be some bad program or virus. Her reply? "But it says click me!" <whistles innocently>
:drool::doh:

~Lordbob
 

My Computer My Computer

Computer Manufacturer/Model Number
Hera
OS
Windows 7 Ultimate x64, Mint 9
CPU
Intel i5-2500k
Motherboard
ASUS P8P67 Pro
Memory
2x 4Gb Corsair VENGEANCE DDR3-1600
Graphics Card(s)
NVidia GeForce N260GTX Twin Frozr
Sound Card
Realtek HD OnBoard Audio
Monitor(s) Displays
ASUS 24" Monitor
Screen Resolution
1920x1080
Hard Drives
G.SKILL Phoenix Series 60GB SATA II MLC Internal Solid State Drive (SSD)
SAMSUNG Spinpoint F3R 1TB 7200 RPM 32MB Cache SATA II
PSU
Cooler Master Real Power Pro 750W
Case
Cooler Master Haf 932
Cooling
Fans
Keyboard
Razer Tarantula
Mouse
Razer Lachesis
Internet Speed
not fast enough

My Computer My Computer

Computer Manufacturer/Model Number
The Monolith. 3.1
OS
Windows 7 Home Premium 64 bit
CPU
i7 [email protected]
Motherboard
Gigabyte Z77-D3H
Memory
2x4GB Corsair Vegeance DDR3
Graphics Card(s)
XFX GTX 260 Black Edition
Sound Card
none-through large stereo hi fi
Monitor(s) Displays
Croosover 27MDP LED IPS Dell 2408 WFP
Screen Resolution
2560x1440 1920x1200
Hard Drives
1x Samsung 840Pro 128GB SSD
1x Samsung Spinpoint F1 1TB
PSU
Corsair AX 850 Watt
Case
Cooler Master ACTS 840
Cooling
Be Quiet! Dark Rock Pro
Keyboard
Enermax Aurora
Mouse
Logitech Ballmouse
Internet Speed
20MBPS
unfortunately to the unwitting scareware popups can be quite alarming.

my girlfriend's grandma completely freaked out over one (on a mac nonetheless) and is convinced she has a virus and will now pay money for a mac technician to look at it.
Co-worker friend has a Macbook Pro, and got worried about similar thing. He opened Safari or something, and it popped up a fullscreen animated GIF of flashing red VIRUS and other bits on Icons..telling him his AV was out of date, and click here to buy this AV to "fix" the viruses he had.

He called me up to take a look at it, because his login password wasn't working to give him admin rights or summat to install this AV :shock:

When he arrived at my house, he opened the lid and showed me what it was doing. As soon as I saw it, I immediately noticed it was a fake .. cause all the GFX were of a XP Home computer :party:.
 

My Computer My Computer

Computer Manufacturer/Model Number
Asus V2-M3M8200 Barebones
OS
Windows 7 Professional x64
CPU
AMD Phenom II X4 925
Motherboard
V2-M3M8200 (basically a M3N78-VM)
Memory
4x1024mb Kingston HyperX DDR2-1066 KHX8500D2/1G
Graphics Card(s)
Asus GTS 450 OC
Sound Card
Creative Sound Blaster X-Fi Titanium PCIe
Monitor(s) Displays
Asus 24" LCD VH242H
Screen Resolution
1920x1080
Hard Drives
WDC WD5000AAKS
WDC WD5002ABYS
Seagate ST325062 USB-to-IDE
Fujitsu 160GB Pocket USB HDD
PSU
Antec Earthwatts EA-430D
Case
Asus V2-M3M8200
Cooling
120mm side fan & 80mm front & 92mm rear fan
Keyboard
Dell USB mini Multimedia
Mouse
Logitech MX518
Internet Speed
Comcast Xfinity
Other Info
Logitech Webcam Pro 9000
Accurian 40-1462 Speakers
little dot MKII Headphone Amp
unfortunately to the unwitting scareware popups can be quite alarming.

my girlfriend's grandma completely freaked out over one (on a mac nonetheless) and is convinced she has a virus and will now pay money for a mac technician to look at it.
Co-worker friend has a Macbook Pro, and got worried about similar thing. He opened Safari or something, and it popped up a fullscreen animated GIF of flashing red VIRUS and other bits on Icons..telling him his AV was out of date, and click here to buy this AV to "fix" the viruses he had.

He called me up to take a look at it, because his login password wasn't working to give him admin rights or summat to install this AV :shock:

When he arrived at my house, he opened the lid and showed me what it was doing. As soon as I saw it, I immediately noticed it was a fake .. cause all the GFX were of a XP Home computer :party:.

What in the name of god is "summat"?
 

My Computer My Computer

Computer Manufacturer/Model Number
Custom
OS
Windows 7 Ultimate RTM (Technet)
CPU
3.00 gigahertz Intel Core2 Duo E8400
Motherboard
ASUSTeK Computer INC. P5K/EPU Rev 1.xx
Memory
4GB
Graphics Card(s)
ATI Radeon X1950 Pro
Sound Card
Built in HD Audio
Monitor(s) Displays
22" Gateway LCD
Screen Resolution
1920 x 1200
Hard Drives
ST3160023A [Hard drive] (160.04 GB) -- drive 0, rev 8.01, ST3500630AS [Hard drive] (500.11 GB) -- drive 2, rev 3.AAK
ST3500630AS [Hard drive] (500.11 GB) -- drive 1, rev 3.AAK
Keyboard
Logitech G11
Mouse
Microsoft Wireless Laser Mouse 5000
Internet Speed
13.44 Mbps
"Summat" is a good old-fashioned way of saying "something" over here in the UK. :D

Similarly, "nowt" means "nothing".
 

My Computer My Computer

Computer Manufacturer/Model Number
HP Pavilion Elite 495UK
OS
Windows 7 Ultimate SP1 64-Bit
CPU
Intel Core i7 870 @ 2.93GHz
Motherboard
MSI 2A9C (CPU1)
Memory
8Gb Dual-Channel DDR3 @ 664MHz
Graphics Card(s)
nVidia GeForce GTX 460 1024MB dedicated RAM
Sound Card
Realtek HD Audio
Monitor(s) Displays
HP2310i
Screen Resolution
1920 x 1080
Hard Drives
1x1954GB Hitachi HDS22020ALA 330 (RAID), 1x1954GB Hitachi External for backup and storage
PSU
460W
Case
HP Elite
Cooling
Air cooled
Keyboard
Logitech K750 solar-powered keyboard
Mouse
Logitech Wireless M180 mouse
Internet Speed
2Mb
Other Info
Pure Avanti Flow Internet Radio with iPod Dock, 64Gb iPod, HP USB Speakers, Sony MDR-V500 Headphones, Sony Vaio F-Series Laptop
i use 'summat' for shortening 'something or other like that' or 'something like that' .. summat!
 

My Computer My Computer

Computer Manufacturer/Model Number
Asus V2-M3M8200 Barebones
OS
Windows 7 Professional x64
CPU
AMD Phenom II X4 925
Motherboard
V2-M3M8200 (basically a M3N78-VM)
Memory
4x1024mb Kingston HyperX DDR2-1066 KHX8500D2/1G
Graphics Card(s)
Asus GTS 450 OC
Sound Card
Creative Sound Blaster X-Fi Titanium PCIe
Monitor(s) Displays
Asus 24" LCD VH242H
Screen Resolution
1920x1080
Hard Drives
WDC WD5000AAKS
WDC WD5002ABYS
Seagate ST325062 USB-to-IDE
Fujitsu 160GB Pocket USB HDD
PSU
Antec Earthwatts EA-430D
Case
Asus V2-M3M8200
Cooling
120mm side fan & 80mm front & 92mm rear fan
Keyboard
Dell USB mini Multimedia
Mouse
Logitech MX518
Internet Speed
Comcast Xfinity
Other Info
Logitech Webcam Pro 9000
Accurian 40-1462 Speakers
little dot MKII Headphone Amp

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Windows 7 Professional SP1 - x64 [Non-UEFI Boot]
CPU
Ivy Bridge Core i5 3570K (Delidded)
Motherboard
Asus P8Z77-V LE PLUS
Memory
G.Skill "Ares" DDR3 PC3-12800 - 1600MHz (16Gb)
Graphics Card(s)
Asus Dual-RX480-O4G
Sound Card
Creative Sound Blaster Z w/5.1 sound system
Monitor(s) Displays
Asus IPS 23"
Screen Resolution
16/9
Hard Drives
Internal:
500Go Sata 6Gb/s (x2)
500Go Sata 3Gb/s (x2)
SSD 60Go Sata 6Gb/s
PSU
In Win C 900W Series 80+ Platinum
Case
Thermaltake Chaser A71
Cooling
Custom Water Cooling Loop
Keyboard
Cooler Master QuickFire XTi
Mouse
Razer Imperator 2012 (4G)
Antivirus
MSE
Browser
IE 11.0.xxx Rtm
Other Info
"Raid0" with Intel Smart Response Technology (HDD/SSD)
Windows scareware fakes impending drive disaster

More on link below

Windows scareware fakes impending drive disaster

'Erases' files, icons as lead up to pitch for $80 to buy worthless utility

By Gregg Keizer
May 16, 2011 12:47 PM ET


Computerworld - Scammers are trying to trick Windows users into paying to fix bogus hard drive errors that have apparently erased important files, a researcher said today.
The con is a variant of "scareware," also called "rogueware," software that pretends to be legitimate but actually is just a sales pitch based on spooking users into panicking. Most scareware masquerades as antivirus software.
But Symantec researcher Eoin Ward has found a new kind of scareware that impersonates a hard drive cleanup suite that repairs disk errors and speeds up data access.
Dubbed "Trojan.Fakefrag" by Symantec, the fake utility ends up on a Windows PC after its user surfs to a poisoned site -- often because the scammers have manipulated search engines to get links near the top of a results list -- and falls for a download pitch, typically because it's presented as something quite different, like video of a hot news topic.
Fake system or disk cleanup programs aren't new -- Symantec has highlighted the scareware subcategory before -- but this malware goes above and beyond the call of counterfeit duty.
"[Trojan.Fakefrag's] aim is to increases the likelihood of you purchasing a copy of Windows Recovery by craftily convincing you that your hard drive is failing," said Ward in a company blog Monday, referring to the name of the fake suite that the Trojan shills.
 

My Computer My Computer

Computer Manufacturer/Model Number
Dell 570MT
OS
Windows 7 Home Premium 64bit
CPU
Athlon XII
Motherboard
?
Memory
4GB
Graphics Card(s)
ATI Radeon 4200
Sound Card
?
Monitor(s) Displays
Asus and Dell
Hard Drives
Unknown
PSU
unknown
Case
unknown
Cooling
unknown
......

People fall for that?
The Google Chrome boxes were OBVIOUSLY not from Chrome, seriously.

Though I will give it that, IE9 apparently has an annoyingly good warnings program. Chrome could step it up a tad.

~Lordbob
Unfortunately they do LB. In another post I mentioned a lady friend of mine who opened some page which had a flashing banner ad "CLICK ME", which she of course started to do. I warned her not to since it could be some bad program or virus. Her reply? "But it says click me!" <whistles innocently>
:drool::doh:

~Lordbob
:roflmao:
 

My Computer My Computer

Computer Manufacturer/Model Number
Custom Built by me.
OS
Windows 7 Ultimate 64bit SP1
CPU
Intel Core 2 Quad Q6600
Motherboard
Gigabyte GA-X38-DS4
Memory
2X2GB DDR2 PC6400 800MHZ DUAL CHANNEL
Graphics Card(s)
XFX RADEON HD 6850 1GB GDDR5
Sound Card
2/4/5.1/7.1-channel Realtek High Definition
Monitor(s) Displays
Samsung LE40A656F1 1080p 100Hz LCD HD TV 50,000:1
Screen Resolution
1366x768 in Desktop,1920x1080p in gaming and video
Hard Drives
C:\WD VelociRaptor 150 GB,10,000 RPM
E:\WESTERN DIGITAL WD15EADS 1.5TB CAVIAR GREEN SATA2 F:\WESTERN DIGITAL WD15EADS 1.5TB CAVIAR GREEN SATA2
PSU
THERMALTAKE W0229 TOUGHPOWER XT 750W
Case
A-Case Twin Engine BB
Cooling
3 x thermaltake smart case fan II + 1 arctic cooling fan
Keyboard
Wireless Logitech LX710
Mouse
Logitech Wireless Gaming Mouse G700
Internet Speed
ADSL 12000 plus
Other Info
Mouse Logitech G700,with 13 buttons who needs keyboard in RPG?

D:\Sony high speed sata Dvd Rewriter
Logitech Cordless Rumblepad 2
Hi there

There is a whole slew of "Cheatware" as well -- how many times have you followed a link for example to FREE DOWNLOAD -- only to find out the download is FREE but the SOFTWARE isn't.

Rapidfile / similar links are much the same -- you are directed towards another "Free" program" to download but you then have to "Pay" a registration fee to use the download or in some cases after waiting say 3 mins or more to use the "Free slow service" you get taken back to the "Pay" premium screen and the whole pathetic scam starts again.

My pet hate are those "Driver" apps -- they offer to find drivers / fix computer etc --but you then have to PAY to access the files.

At least these are "Open" Scams pure and simple -- usually they don't install viruses or malware -- however BEWARE of any adware which pops up with "Click Me" or other "invitations". This is a 100% sure method of infecting your machine.

Cheers
jimbo
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom built, several laptops HP/ASUS
OS
Linux CENTOS 7 / various Windows OS'es and servers
CPU
Intel i7 Intel i5
Memory
8GB, 16GB
Graphics Card(s)
On Motherboard
Sound Card
Realtek HD audio
Monitor(s) Displays
Apple Cinema display, Samsung LCD
Screen Resolution
1920 X 1080
Hard Drives
4 X 1TB SATA
Mouse
Toshiba wireless laser
Internet Speed
> 20MB up
Back
Top