Threat Database Fake Error Messages '9 Spyware Found' Pop-up

'9 Spyware Found' Pop-up

By Domesticus in Fake Error Messages

"9 Spyware Found" popup is a fake security message issued by the rogue anti-spyware application known as WinBlueSoft. The popup reads as follows:

"9 SPYWARE Found.

Attention: DANGER!

WinBlueSoft has detected 9 Critical SPYWARE Objects while scanning the system. Following object will shortly interrupt system running by: annoying advertisements wasting your traffic; slow page downloading speed. Web browser is not working properly; cyber thieves get access to credit card; criminals will steal your personal data and photos; hackers will get access to email box, personals, hosting and Internet services. They will use your computer and IP address for illegal purposes. Register WinBlueSoft to block or remove threatening objects. Click "Remove" to register the version to render revealed threats."

Ignoring these fake security alerts will not make them go away, and following their prompts will cause the user to be tricked into purchasing and downloading the fake spyware remover WinBlueSoft.

File System Details

'9 Spyware Found' Pop-up may create the following file(s):
# File Name Detections
1. C:\Windows\System32\blocker.dll
2. c:\Program Files\WinBlueSoft Software\WinBlueSoft\uninstall.exe
3. c:\Program Files\WinBlueSoft Software\WinBlueSoft\WinBlueSoft.exe
4. C:\Documents and Settings\\Desktop\WinBlueSoft.lnk
5. C:\Documents and Settings\\Start Menu\Programs\WinBlueSoft\3 Uninstall.lnk
6. c:\Program Files\WinBlueSoft Software\WinBlueSoft
7. c:\Program Files\WinBlueSoft Software\WinBlueSoft\license.txt
8. C:\Documents and Settings\\Start Menu\Programs\WinBlueSoft\2 Homepage.lnk
9. c:\Program Files\WinBlueSoft Software
10. c:\Program Files\WinBlueSoft Software\WinBlueSoft\data.bin
11. C:\Documents and Settings\\Start Menu\Programs\WinBlueSoft\1 WinBlueSoft.lnk
12. C:\Documents and Settings\\Start Menu\Programs\WinBlueSoft

Registry Details

'9 Spyware Found' Pop-up may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "WinBlueSoft"


Most Viewed