Mark42
Fleet Admiral
- Joined
- Oct 8, 2003
- Messages
- 9,334
I picked up a "Malware" virus yesterday. Called AntiSpy Gold and Antivirus Gold, its especially infuriating, because it was written by a company that supplies virus protection.
What it does is downloads itself without your consent, (I think I got it downloading a "free" trial version media player) and then every few minutes, issues a warning (a flashing icon in the system tray, and a bubble message) that your PC in infected with a popular known virus. When you click on the message to make it go away, it opens a browser and takes you to the AntiSpy Gold website to purchase their virus protection. This cycle goes on every two to three minutes. It also downloads more "malware" telling you that you need more protection, and more pop-up messages. It imitates the Windows "Security Center" window so well, I had to double check that it was not really Microsoft Firewall telling me that there as a problem.
After wasting a half hour of my time deleting cookies, registry entries, load libs, DLL's, etc and rebooting, Anti Spy Gold was right there in my face.
BTW, neither Mcafee, Spybot, Ad-Watch, or Ad-ware were able to detect (and therefore remove) this virus.
I did finally find a program someone wrote to get rid of this sort of malware. I downloaded it (very cautiously) and was able to delete the virus from my PC.
I sent a few emails off to the AntSpy people asking them how to remove this advertising virus from my PC, but I doubt I will get a response. How do these people expect to sell something with such a vicious attack on you?
Here is a link to the virus fix, you might want to download and save this program just in case:
http://www.bleepingcomputer.com/forums/topic22397.html
What it does is downloads itself without your consent, (I think I got it downloading a "free" trial version media player) and then every few minutes, issues a warning (a flashing icon in the system tray, and a bubble message) that your PC in infected with a popular known virus. When you click on the message to make it go away, it opens a browser and takes you to the AntiSpy Gold website to purchase their virus protection. This cycle goes on every two to three minutes. It also downloads more "malware" telling you that you need more protection, and more pop-up messages. It imitates the Windows "Security Center" window so well, I had to double check that it was not really Microsoft Firewall telling me that there as a problem.
After wasting a half hour of my time deleting cookies, registry entries, load libs, DLL's, etc and rebooting, Anti Spy Gold was right there in my face.
BTW, neither Mcafee, Spybot, Ad-Watch, or Ad-ware were able to detect (and therefore remove) this virus.
I did finally find a program someone wrote to get rid of this sort of malware. I downloaded it (very cautiously) and was able to delete the virus from my PC.
I sent a few emails off to the AntSpy people asking them how to remove this advertising virus from my PC, but I doubt I will get a response. How do these people expect to sell something with such a vicious attack on you?
Here is a link to the virus fix, you might want to download and save this program just in case:
http://www.bleepingcomputer.com/forums/topic22397.html