Threat Database Rogue Anti-Spyware Program Internet Security Deluxe 2011

Internet Security Deluxe 2011

By SpideyMan in Rogue Anti-Spyware Program

Don't count on Internet Security Deluxe 2011 for protection against the installation of malware. Internet Security Deluxe 2011 is a fake security program, which tries to scare people into thinking that their computers are infected with viruses that only Internet Security Deluxe 2011 can remove.

How Does Internet Security Deluxe 2011 Infect a Computer, and What the Symptoms Look Like

Internet Security Deluxe 2011 relies on Trojans in order to infect computers; Internet Security Deluxe 2011 does not usually cause an infection directly. Typically, the Trojan supporting Internet Security Deluxe 2011 will be hidden in a file downloaded from a file sharing service or freeware website, or Internet Security Deluxe 2011 may be downloaded onto your computer if you visit a malicious link (such as a fake online virus scan) that promotes Internet Security Deluxe 2011. For example, there is some history of this Trojan being spread via malicious links from social networking sites. The Trojan – which is the notorious Zlob malware – takes care of setting up Internet Security Deluxe 2011. Usually, Internet Security Deluxe 2011 will become active after you restart your computer.

In order to manipulate you into paying for malware, Internet Security Deluxe 2011 uses a variety of scare tactics. The first thing you'll notice is that after you start your computer, before you see the desktop, Internet Security Deluxe 2011 will load its user interface, its fake home screen. The home screen is bland and generic-looking, with a yellow shield logo and some lame taglines about protecting you from malware. Internet Security Deluxe 2011 also uses the Windows logo, without permission. When the phony interface appears, it will show a progress animation and pretend to be scanning your computer for threats. Regardless of the actual state of your computer's security, Internet Security Deluxe 2011 will tell you that you that your computer is absolutely infested with malware, and Internet Security Deluxe 2011 will claim that in order to remove this malware you must pay for Internet Security Deluxe 2011's license. However, because Internet Security Deluxe 2011 can't actually scan for threats or remove malware, regardless of how expensive it could be, there is no good reason to buy a license. Internet Security Deluxe 2011 is a scam, pure and simple.

It is possible to get past the Internet Security Deluxe 2011 home screen, by waiting through the fake scan and avoiding clicking on any of the "removal" prompts Internet Security Deluxe 2011 gives you. Once you have cleared the phony interface, Internet Security Deluxe 2011 will continue to pester you to buy a license, by generating security alerts and warning messages that say that malware has been found on your computer. These alerts will encourage you to visit the Internet Security Deluxe 2011 website in order to purchase a license. License "purchases" are by credit card only, and reportedly, the purchase site for Internet Security Deluxe 2011 says that part of the proceeds of each license purchase is donated to charity! Do not give in, no matter how many error messages or fake scan results Internet Security Deluxe 2011 gives you, because not only will you not get anything for the money that you pay, but you also are giving your credit card information to criminals.

Although the fake scans and alerts are the most common symptoms of an infection with Internet Security Deluxe 2011, there have been reports of some other issues, as well. Specifically, Internet Security Deluxe 2011 may hijack your web browser so that it navigates on its own to malicious sites, or Internet Security Deluxe 2011 may change your home page. Internet Security Deluxe 2011 may even change your desktop wallpaper to a warning about your PC security. Depending on your individual computer's hardware configuration, Internet Security Deluxe 2011 may put a severe enough demand on system resources to cause the system to slow down or crash.

History of Internet Security Deluxe 2011

Internet Security Deluxe 2011 is a little bit unusual, because Internet Security Deluxe 2011 has been around before, possibly identical in every respect except for its name – but instead of being based on malware released last week or last month, Internet Security Deluxe 2011 is based on malware released several years ago, called Internet Security Deluxe. Back in July 2008, Internet Security Deluxe surfaced, and Internet Security Deluxe 2011 caused all of the same symptoms and used all the same interfaces and graphics that are currently used by Internet Security Deluxe 2011. Internet Security Deluxe had a relatively well-known website, internetsecuritydeluxe.com, which claimed to sell Internet Security Deluxe and offered a free "trial" download. Of course, the "trial" version was nothing less than the malware itself, because Internet Security Deluxe was completely fake. The Internet Security Deluxe website from 2008 is now defunct. After the malware laid low for a few years, it has re-emerged and renamed itself Internet Security Deluxe 2011, which does not seem to have such an obvious marketing scheme. So despite the fact that Internet Security Deluxe 2011 is not just a cookie-cutter clone of malware that has been released under a dozen different names in the last week, Internet Security Deluxe 2011 is just as dangerous as any rogue anti-virus program circulating the Internet.

File System Details

Internet Security Deluxe 2011 may create the following file(s):
# File Name Detections
1. ServiceInterface.dll
2. saveid.exe
3. %PROGRAM_FILES%\\InternetSecurityDeluxe\\controls.dll
4. ScanEngine.dll
5. Popuper.exe
6. ui.exe
7. controls.dll
8. InternetSecurityDeluxe.exe
9. InternetSecurityDeluxeSetup.exe
10. SystemService.exe
11. %PROGRAM_FILES%\\InternetSecurityDeluxe\\ScanEngine.dll%PROGRAM_FILES%\\InternetSecurityDeluxe\\ServiceInterface.dll
12. InternetSecurityDeluxe

Registry Details

Internet Security Deluxe 2011 may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\

Trending

Most Viewed

Loading...