BlockDefense
BlockDefense Description
BlockDefense (also known as Block Defense) is a rogue anti-spyware application and a clone of SaveSoldier, SaveKeep, SaveDefense and TrustNinja. Once it has infiltrated the computer system, BlockDefense begins running a fake system scan that displays fictitious and sometimes grossly exaggerated infection results, along with fake security alerts, in order to fool the user into thinking the computer has been compromised. The user is then prompted to purchase and install BlockDefense in order to combat these threats.
Type: Rogue AntiSpyware Programs
How Can You Detect BlockDefense?
BlockDefense creates the following registry entries:
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BLOCKDEFENSESVC
- HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BLOCKDEFENSESVC\0000
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BlockDefenseSvc\Security
- HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BlockDefenseSvc
- HKEY_LOCAL_MACHINE\SOFTWARE\BlockDefense
- HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BLOCKDEFENSESVC
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BlockDefenseSvc
- HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BLOCKDEFENSESVC\0000\Control
- HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BlockDefenseSvc\Enum
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BlockDefense
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BLOCKDEFENSESVC\0000
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BLOCKDEFENSESVC\0000\Control
- HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BlockDefenseSvc\Enum
- HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BlockDefenseSvc\Security
Important Article Disclaimer
This entry was posted on 08/31/09 and is filed under Rogue Anti-Spyware Program.
You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

English 
Deutsch
Español
Français
Portuguese
BlockDefense 











