Anti Spyware Scam

M

Merryterry

Just a warning. I thought I had a spyware problem and got led to a
download of a programme called Antispywarebot. (I was led there by
trying to download Spybot).

Antispywarebot is very cunningly disguised malaware in itself. It
partially disabled my Macafee. It did detect spyware and deleted it
but did not detect itself. I spent three whole days finding this out.

Why didnt Mcafee detect this problem in the first place?
 
M

Mick Murphy

Below are 3 Programs to use for Spyware, Malware, etc.
And SPYBOT is a spyware infection!
"Spybot Search & Destroy" is the remover, lol.
And remove problems in Safe Mode, if necessary

Any combo anti-virus tha wants to be everything to everybody, fails!

http://www.spybot.info/en/index.html

Spybot Search & Destroy 1.6 is a very good, FREE Anti-Spyware Program.
Download, install, update, and immunize your System with it.
Then SCAN with it.
Update it, and scan your System once a fortnight.

http://www.javacoolsoftware.com/spywareblaster.html

SpywareBlaster 4.1 is a non-intrusive, FREE Anti-Spyware Program (no
scanning by you!).
SpywareBlaster prevents the installation of many so-called spyware, adware
and malware programs by disabling the CLSIDs of popular spyware ActiveX
controls, and also prevents the installation of any of them via a webpage
Update it once a fortnight.

http://www.malwarebytes.org/mbam.php

Malwarebytes is as the name says, a Malware Remover!
For the Free version scroll down their page to either download from
Download.com, or Major Geeks.com

Download, install, and update.
 
T

Twayne

Below are 3 Programs to use for Spyware, Malware, etc.
And SPYBOT is a spyware infection!
"Spybot Search & Destroy" is the remover, lol.
And remove problems in Safe Mode, if necessary

Any combo anti-virus tha wants to be everything to everybody, fails!

http://www.spybot.info/en/index.html

Spybot Search & Destroy 1.6 is a very good, FREE Anti-Spyware Program.
Download, install, update, and immunize your System with it.
Then SCAN with it.
Update it, and scan your System once a fortnight.

http://www.javacoolsoftware.com/spywareblaster.html

SpywareBlaster 4.1 is a non-intrusive, FREE Anti-Spyware Program (no
scanning by you!).
SpywareBlaster prevents the installation of many so-called spyware,
adware and malware programs by disabling the CLSIDs of popular
spyware ActiveX controls, and also prevents the installation of any
of them via a webpage Update it once a fortnight.

http://www.malwarebytes.org/mbam.php

Malwarebytes is as the name says, a Malware Remover!
For the Free version scroll down their page to either download from
Download.com, or Major Geeks.com

Download, install, and update.

All excellent programs except maybe MalwareBytes.


MalwareBytes seemed like a decent program until it declared a setup.exe
to be a rogue.installer in a couple of places but they turned out to be
legitimate setups. Fortunately I didn't let it "fix" them by deleting
them or by the time I got around to using them I may never have caught
on to what had gone wrong. It finds a setup.exe and declares it a
"rogue.installer" when it's actually a false positive, in my experience
here.
Checking that a little further, I discovered on their forum that
they're taking each case of a false hit on a setup.exe and issueing
verifying and releasing fixes for them almost on a case by case basis,
which accounts for some of the many updates theyv'e been sending out in
my mind. It looks like they're relying on their user base to tell them
what's wrong rather than putting in the effort to fix all these false
hits. If they'd been up front and honest by telling me that was
happening I wouldn't have minded, but if they're cutting that corner and
being covert about it, what other corners are they cutting? I shouldn't
have had to search their forums for that answer; it should have been
clearly visible and up front.
Search their forums for setup.exe and you'll see what I mean.

I haven't noticed anything else wrong with it, but I quit using it
because of that; I can't tell a real rogue installer from a legit
setup.exe with them without stopping to research every one it comes
across.
You can get it to stop finding them by just renaming setup.exe to
anythng different, e.g. installme.exe or whatever. It seems to go
solely on the name and what folder it appears in - move it to a
different folder with lots of dll's in it, and it won't find it either,
based on my tests. So they're obviously not actually looking inside the
file for any kind of signature or anything; so what else are they
guessing on like that?

So at least with setup.exe, if it declares one as a rogue.installer,
research first to be sure it's not a false hit. In both cases it was a
false positive in my case and apparently many hundreds of others too by
the look of their forums.

HTH
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Similar Threads

Help with spyware 5
Brief poll and anti-spyware question... 2
Scam anti-spyware programs 1
Spyware Programs 1
Spyware faults x 2 3
MTBS.EXE 1
Which anti-spyware? 11
Spyware - Help 8

Top