Fake Online AV Scanner Installs Fake AV

Page 1 of 2 12 LastLast

  1. Posts : 31,249
    Windows 11 Pro x64 [Latest Release and Release Preview]
       #1

    Fake Online AV Scanner Installs Fake AV


    Fake Online AV Scanner Installs Fake AV

    Today, SophosLabs witnessed a bogus website with a fake online AntiAdware scanner. When the website is accessed, it executes embedded javascript within the webpage. This script will cause the victim’s computer to display a fake progress bar pretending to scan the victim’s computer. After some time, a warning popup message appears and alerts the victim’s computer that it was infected by several spyware and viruses. It subsequently provides a link for the victim which when clicked will initiate a file download named Setup.exe. This file is malicious and is detected by SophosLabs as Troj/FakeAV-ABD. Access to the website has also been blocked in the Sophos Web Appliance.

    More ...
      My Computers


  2. Posts : 8,476
    Windows® 8 Pro (64-bit)
       #2

    I never trust online scanners. Thanks for the heads up though.
      My Computer


  3. Posts : 271
    Windows 7 Enterprise x64
       #3

    Dinesh said:
    I never trust online scanners. Thanks for the heads up though.
    Not unless if its one of the official brands like ESET, Kaspersky, Norton exc.
    Ive used ESETs official online scanner before on another pc and it found and removed the infections. PC worked great after that.
      My Computer


  4. Posts : 8,476
    Windows® 8 Pro (64-bit)
       #4

    What i believe is that even an online scanner uses an internet browser and what if your browser itself is hijacked or infected?
      My Computer


  5. Posts : 31,249
    Windows 11 Pro x64 [Latest Release and Release Preview]
    Thread Starter
       #5

    Valid points Dinesh

    I have used on line scanners in the past, as an emergency measure and will not have issues using them in the future - but as stated above only from the known AV experts and with valid security certificates.

    The issue highlighted in the news post is more as a warning of a change in method of malware to catch out less experienced users that the vast majority of SevenForums users. The old adage "know your enemy" is important in the IT security field
      My Computers


  6. Posts : 8,476
    Windows® 8 Pro (64-bit)
       #6

    Barman58 said:
    Valid points Dinesh

    I have used on line scanners in the past, as an emergency measure and will not have issues using them in the future - but as stated above only from the known AV experts and with valid security certificates.

    The issue highlighted in the news post is more as a warning of a change in method of malware to catch out less experienced users that the vast majority of SevenForums users. The old adage "know your enemy" is important in the IT security field
    Btw, what AV do you use? Avast?
      My Computer


  7. Posts : 31,249
    Windows 11 Pro x64 [Latest Release and Release Preview]
    Thread Starter
       #7

    Avast 4.8 AV with Comodo F/W behind a decent Hardware router firewall Regular manual Spybot and malwarebytes.

    And the most important security measure of all - careful surfing

    Leak tests and such from Internet test sites report my systems here as not existing! - even my browser reports that it's something it's not to the net
      My Computers


  8. Posts : 8,476
    Windows® 8 Pro (64-bit)
       #8

    Barman58 said:
    Avast 4.8 AV with Comodo F/W behind a decent Hardware router firewall Regular manual Spybot and malwarebytes.

    And the most important security measure of all - careful surfing

    Leak tests and such from Internet test sites report my systems here as not existing! - even my browser reports that it's something it's not to the net
    This is what is called as Tight Security.
      My Computer


  9. Posts : 185
    Windows 7 Ultimate 32 bit
       #9

    would this particular scanner look like xp when you open it?

    Running windows 7 my mom (who's clueless to anything about computers except facebook) was on her facebook. A message popped up telling her the computer had 6 virus's and that she needed to do this scan. So not knowing any better she clicked ok and a webpage came up, I came into the room in time to stop it. The page looked like the windows xp my computer folder with a progress bar "window" infront of it. It was downloading something and after I cancelled the download I scanned the computer with AVG and a .exe came up called "XP Virus Infection Software Scanner" came up in the search. I dealt with it and the computer was safe but a few days later it happened to me. I deleted everything in my cookies folder and it hasn't happened since.
      My Computer


  10. Posts : 685
    Windows 7 32bit RTM
       #10

    can someone link me to the actual fake site ;P?
      My Computer


 
Page 1 of 2 12 LastLast

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 05:15.
Find Us