An update to yesterdays post.
IP:77.91.231.201
wplayerware.com
IP: 77.91.231.183
trustedware.com
In our daily work we see many different attempts to trick a user to install dubious software. One of the more common variants is to use fake video codecs, in other words claim that the user needs to download and install their software in order to see some videos. This could look something like this.
As soon as the user enters the page they will be presented with the following warning:
Recently we came across this clone of XLG Security Center. XLG Privacy Control Center is being distributed as a fake video codec and through email spam.
Recently we stumbled upon a rogue application that used a very aggressive way to get users to register and pay for a license. It all started with one downloaded file disguised as a movie file, using .wmv.exe extension and using a windows media icon. Once the file was run it started by warning you that your PC may be infected.