10 Dec 2008 | By Kristopher | Posted under Browser Hijackers, Fake Antispyware | No Comments »

FrontHomePagez.com/security/xp/ Threat Level: FrontHomePagez.com/security/xp/ is a pest

FrontHomePagez.com/security/xp/ screenshot FrontHomePagez.com/security/xp/ is a fake anti-spyware browser hijacker. You could be browsing the web, and out of nowhere a FrontHomePagez.com/security/xp/ popup appears:

The page at http://www.FrontHomePagez.com/security/xp/ says:
Warning! W32.Myzor.FK@yf is a virus that infects files with .exe extensions. It attempts to steal passwords and private information from the infected computer.

If you click “OK,” you’re forwarded to SystemTrigger.com, to buy fake anti-spyware software Antivirus Trigger.

If your computer keeps going to FrontHomePagez.com/security/xp/, don’t buy its scare tactics.

I’ll show you how to block FrontHomePagez.com/security/xp/ for free.

Keep reading »


07 Oct 2008 | By Kristopher | Posted under Browser Hijackers, Fake Antispyware | 2 Comments »

W32.Myzor.FK@yf Threat Level: W32.Myzor.FK@yf is a pest

W32.Myzor.FK@yf screenshotW32.Myzor.FK@yf is a fake virus that appears in popups by browser hijackers (think PureSafetyHere.com). W32.Myzor.FK@yf popups are trying to scare you into buying rogue anti-spyware, such as AntiSpyware Shield, XP Antivirus 2008, and WinSpyKiller. This W32.Myzor.FK@yf popup reads:

Warning! W32.Myzor.FK@yf is a virus that infects files with .exe extensions. It attempts to steal passwords and private information from the infected computer.
Type: Virus
Infection Length: 138,293 bytes
Systems Affected: Windows 95, 98, ME, NT (all versions), 2003, Windows XP (all service packs)
Systems Not Affected: DOS, EPOC, Linux, Macintosh, Novell Netware, OS/2, UNIX
Technical details: Creates files in %Windir%\ directory. By default, this is C:\Windows.
Adds values to registry keys: HKEY_LOCAL_MNACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Scans the hard drive for .exe files and infects any executable files. Searches for passwords/information, which it may send to a remote attacker.
Recomendations [SIC]: Click “OK” to download officially approved security software.
Always keep your patch levels up-to-date.

Always keep a healthy skepticism would be a better recommendation.

You’re not infected with W32.Myzor.FK@yf: you’re infected with fake anti-spyware.

Keep reading »