On CHOW: Can nutmeg make you hallucinate?
BNET Business Network:
BNET
TechRepublic
ZDNet

September 19th, 2005

Spyware tricks

Posted by Suzi Turner @ 11:48 pm

Categories: Spyware/adware warnings

Tags:

I just spent the last few hours downloading spyware, making videos of stealth installs, getting logs with InCtrl5, HijackThis and my firewall.  Spyware tricks are becoming more devious all the time.  Just recently other researchers and I have seen more installations with multiple resuscitators, increasing numbers of randomly named files, even randomly named folders. Internet Explorer security settings are being changed by spyware and hosts files are being hijacked. We’ve recently seen installations of keyloggers and spam bots along with your garden variety of adware.

One of the most egregious hijacks I’ve seen recently is by a site imitating a Windows security site.  I wrote about this on my Spyware Warrior blog, a post called Super Rogues because it is selling 4 rogue anti-spyware programs, PSGuard, WorldAntiSpy, Spy Trooper, Raze Spyware.  Even more recently the same site, security2k.net (link goes to whois info), is being used to hijack browsers in addition to showing fake security warnings to sell rogue anti-spyware.  People are showing up in increasing numbers at spyware removal help forums, desperate to get rid of it.

For anyone happening to land here while searching for help for this hijack, you can get free help at Spyware Warrior, Spyware Info, Malware Removal and other similar forums.  Unfortunately the spyware pushers manage to stay ahead of the anti-spyware programs and people seek help by the scores at forums like the above. 

If the adware apologists and representatives of the adware companies wonder why some of us are "spyware zealots", it’s because we see on a daily basis the damage done to users’ computers and the agony and frustration that users feel.   I know what you Linux, Mac and Firefox fans are thinking, but we won’t get into that discussion now.  And yes, people are uninformed and careless but that doesn’t make it right for the spyware pushers to hijack and infect machines.

Back to my spyware sessions tonight.  I saw spyware/adware from the following companies installed without consent or notice. SurfAccuracy, 180solutions, InternetOptimizer/Avenue Media, Integrated Search Technologies (IST). I saw nearly 2 dozen domains put into the Internet Explorer trusted zone by spyware, domains like searchmiracle.com, windupdates.com, slotch.com, xxxtoolbar.com to name a few.  I saw my firewall stopped cold by spyware.   What is spyware all about?  Money — making money for the spyware pushers, their affiliates and advertisers from the misery of internet users.  It’s. Just. Not. Right. To be continued.

  • Talkback
  • Most Recent of 26 Talkback(s)
MS
I agree with RR's message in principle; it is really inexcusable that a stand-alone program run by an unprivileged user can turn off the firewall or add to the trusted sites list.

However, lat ... (Read the rest)
Posted by: b$ Posted on: 09/22/05 You are currently: a Guest | | Terms of Use
David Fish is my new hero  Valis Keogh | 09/20/05
AN operating system  Roger Ramjet | 09/20/05
The problem with what your saying..  ju1ce | 09/20/05
Never look at Norton Security...  Anton Philidor | 09/20/05
The author talked about this  Roger Ramjet | 09/21/05
MS  b$ | 09/22/05
Video of software installing through a security hole exploit  rogerk | 09/20/05
Don't click the link!  brettc@... | 09/20/05
firewall issue  rogerk | 09/20/05
Thank you, Suzi  John L. Ries | 09/20/05
Agreed...  ju1ce | 09/20/05
Should Do!!!!  Winstone | 09/20/05
Spyware/Adware  Littlefrank | 09/20/05
OS, Users, or the law ???  khilari | 09/20/05
Spyware Tricks  kajoe39 | 09/20/05
It's breaking and entering. Trespassers should be punished..  daver_z | 09/20/05
Spyware ... trespassers should be punished.  ttocsmij | 09/20/05
An opportunity for search companies  daver_z | 09/20/05
Won't end spyware.  Anton Philidor | 09/20/05
Spy and Adware  crb@... | 09/20/05
Spy and Adware  pfurball | 09/20/05
An irony  Anton Philidor | 09/20/05
Re: An Irony  CobraA1 | 09/21/05
Re: Spy and Adware  CobraA1 | 09/21/05
you people?  pikeman666@... | 09/21/05
Small Business suffer the most  xkmail | 09/20/05

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

Enterprise Applications

  • Check out some of the easiest and most powerful ways to boost productivity while saving money on your application infrastructure. See ZDNet's comprehensive Enterprise Application resource center, now!
  • New Online Dashboard
  • Read about top issues IT decision-makers face every day, plus get cost effective solutions to real life IT problems. Oracle Topline