August 2010 archive

WireShark Antivirus rogue of the FakeScanti family

Wireshark Antivirus, a fake security application rogue of the FakeScanti family first seen in August of 2010, used scare tactics showing windows and other applications as being infected to scare the user into buying the rogue. File and Locations: %Program_Files%\Wireshark Antivirus\Wireshark Antivirus.exe %Program_Files%\adc_w32.dll %Program_Files%\alggui.exe %Program_Files%\nuar.old %Program_Files%\skynet.dat %Program_Files%\svchost.exe %Program_Files%\wp3.dat %Program_Files%\wp4.dat Sites associated: belewr2ret.com bondbm3x.com caronlinetu.com core3019.aquashoolonline.com …

Continue reading