Virusheat

Virusheat

Computer virus
Fullname = VirusHeat
Common name = VirusHeat
Family = SmitFraud
Technical name = VirusHeat
Aliases = Virus Heat, VirusHeat 3.9
Classification = Rogue software
Type = Microsoft Windows
Origin = Russian Federation - www.virusheat.com

VirusHeat is known as a rogue anti-spyware program. VirusHeat tricks users into buying a full version of the VirusHeat program through repeated false alert messages or popups. It launched on February 8, 2008

Vendor Description

“VirusHeat is the latest and the most technologically advanced application on the Internet for detection and removal of potentially undesired items. VirusHeat simply guarantees removal of all spyware and related harmful infections from your PC with supported live service.”

Infection

VirusHeat is usually downloaded through a trojan (usually the Zlob trojan) that's bundled in a fake Video codec. Once installed, VirusHeat will run a scan report with exaggerated spyware results which confuse the user into believing that their computer has spyware. After the scan is complete, a warning message will pop up with a link that redirects the user to VirusHeat's homepage where he/she is prompted to buy the VirusHeat software.

ymptoms

VirusHeat displays false warning messages and exaggerated scan reports to mislead the user. VirusHeat repeatedly annoys the user with pop up warnings that prompt the user to purchase a full version of the program. VirusHeat may attempt to change the user's IE homepage to go to VirusHeat's homepage (virusheat.com). VirusHeat may automatically launch on startup. Virusheat has also been updated to version 4.4 but it is nothing different than virusheat 3.9

VirusHeat installs the following:Processes
*VirusHeat 3.9
*VirusHeat 3.9.exeDLLs
*eeioq.dll
*iinqyl.dll
*wuuawkz.dllDirectories
*C:Program FilesVirusHeatRegistry Keys
*HKEY_CLASSES_ROOTclsid{5b55c4e3-c179-ba0b-b4fd-f2db862d6202}

Known Variants

VirusHeat behaves similar to other known Rogue software. VirusProtectPro is a variant of VirusHeat.

Removal

Various anti-spyware removal tools have been known to remove VirusHeat. The latest definition file must be utilized in most anti-spyware programs to completely remove VirusHeat and any associated files.

References

* [http://www.symantec.com/security_response/writeup.jsp?docid=2008-021111-1926-99 Symantec.com - VirusHeat is a misleading application that may give exaggerated reports of threats on the computer]
* [http://research.sunbelt-software.com/threatdisplay.aspx?name=VirusHeat&threatid=203189 research.sunbelt-software.com - VirusHeat is a rogue security program known for scaremongering, high-pressure advertising practices]
* [http://www.siteadvisor.com/sites/virusheat.com virusheat.com Web Safety Ratings from McAfee SiteAdvisor]

ee also

* Malware
* Spyware
* Adware
* Rogue software
* Wikipedia's

External links

* [http://www.bleepingcomputer.com/forums/topic130080.html Bleepingcomputer.com VirusHeat Removal Instructions]
* [http://en.securitylab.ru/viruses/312994.php VirusHeat SecurityLab]
* [http://www.spyware-techie.com/virusheat-removal-guide Non-Techie Removal Guide for VirusHeat]
* [http://www.2-spyware.com/remove-virusheat.html 2-spyware.com automated and manual removal solutions for VirusHeat]
* [http://www.pcthreat.com/parasitebyid-6678en.html PcThreat.com Remove VirusHeat. Instructions and a special tool.]


Wikimedia Foundation. 2010.

Игры ⚽ Поможем написать курсовую

Look at other dictionaries:

  • Rogue-Software — (von engl. rogue [rəʊg], hier im Sinn von „Schurke“, „Spitzbube“, aber auch u. a. „Schelm“), auch Rogueware, ist eine sogenannte Malware, die vorgibt, eine bösartige Software (meist Spyware) gefunden zu haben und dies aber nur in seiner… …   Deutsch Wikipedia

  • Rogueware — Rogue Software (von engl. rogue [rəʊg], hier im Sinn von „Schurke“, „Spitzbube“, aber auch u. a. „Schelm“), auch Rogueware, ist eine sogenannte Malware, die vorgibt, eine bösartige Software (meist Spyware) gefunden zu haben und dies aber nur in… …   Deutsch Wikipedia

  • Rogue software — Rogue security software is software that uses malware (malicious software) or malicious tools to advertise or install itself or to force computer users to pay for removal of nonexistent malware. Rogue software will often install a trojan horse to …   Wikipedia

  • SmitFraud — or W32/SmitFraud.A is a type of spyware that installs itself into a computer via adware, without the user s knowledge. Most of the time, it installs itself after a computer user installs a spurious codec, such as BrainCodec, PCodec or… …   Wikipedia

  • Копмьютерный шпион — Spyware (шпионское программное обеспечение) программа, которая скрытным образом устанавливается на компьютер с целью полного или частичного контроля за работой компьютера и пользователя без согласия последнего. В настоящий момент существует… …   Википедия

  • Программа-шпион — Spyware (шпионское программное обеспечение) программа, которая скрытным образом устанавливается на компьютер с целью полного или частичного контроля за работой компьютера и пользователя без согласия последнего. В настоящий момент существует… …   Википедия

  • Шпионское программное обеспечение — Spyware (шпионское программное обеспечение) программа, которая скрытным образом устанавливается на компьютер с целью полного или частичного контроля за работой компьютера и пользователя без согласия последнего. В настоящий момент существует… …   Википедия

Share the article and excerpts

Direct link
Do a right-click on the link above
and select “Copy Link”