Home
Articles
Spyware Research
Support
Scan Now
Purchase
F.A.Q.
Top 25 Spyware: About SpywareGlossary Latest Detections Fake Scanner Sites Google Search Redirects Bestclicksnow.com Bestwebsearch.com Cliccker.cn Clickover.cn Couponmountain.com Lowpriceshopper.com Mycustomsearch.cn Overclick.cn Shopica.com Shopzilla.com trafficposter.com Toseeka.com Windowsclick.com Zoombli.com ![]() |
protectionssoft.comAlias: protectionssoft.com, Hijacker.protectionssoft.com, Trojan.protectionssoft.com, protectionsoft.com
Description: Protectionssoft.com is a fake 'Security Center' website that hijack your computer in an attempt to sell you rogue anti-spyware and anti-virus products. Protectionssoft.com is secretly installed by a trojan called Zlob Trojan. Zlob Trojan infects computers and generates warning messages announcing the infection, then directs users to download fake anti-spyware and anti-virus products from a host of websites among which is protectionssoft.com. Zlob Trojan promotes several rogue products such as Anti Vermins, Malware Wiper, Pest Wipe, Virus Burst, Virus Bursters, WinAntiSpyware, Virus Blast, System Doctor, SpyAxe, SpyTrooper, Malware Wipe, Adware Punisher, Spy iBlock and SpyGuard. It is highly recommended to remove protectionssoft.com trojan as it also transfers information from the infected computer to unknown servers which makes it a potential for data theft. By removing the Zlob trojan, you also rid your computer of protectionssoft.com hijacker. :: Download SpyNoMore now for a free scan :: Many of these rogue websites that result from ZLOB infection look similar to screenshot below.![]() Threat type: Hijacker - A Hijacker is a software application that takes control of your browser's settings. Usually it changes your home page and redirects it to some unknown site or modifies your search settings. It prevents you from changing back your browser's settings. An infected browser usually operates much slower. Ransomware - Ransomware is a software application that infects a computer and asks for money to have the infection removed. Toolbar - A Toolbar is a group of buttons that performs different tasks. Unwanted toolbars are usually installed by adware programs that try to send users to their paying advertisers. Trojan - A Trojans or Trojan Horse is any programs that installs itself secretly, quite often with sinister intent. Once installed, the trojan author (hacker) can gain complete control of the infected PC. Trojans are usually designed to steal sensitive information and/or destroy the system. Trojans can be distributed as unsolicited email attachments, or bundled with freeware and shareware programs. Advice: Remove This is a very high risk threat and should be removed immediately as to prevent harm to your computer and / or to protect your privacy. Detection: SpyNoMore removes protectionssoft.com: Yes Threat risk: Very High Risk Extremely dangerous malware. Uses stealth installation, randomly named entries and has the capability to self update or resurrect after incomplete removal. Almost impossible to remove manually. Category mostly consists of trojans and spyware. Symptoms: User's homepage is changed to protectionssoft.com or to other so-called 'Security Center' websites. Warning messages such as "Critical System Error!", "Security Alert!", "Your Computer is Infected" and "Malware Threat" are displayed. Balloon messages claiming that your computer is infected with one or more of the following: W32.Myzor.FK, Spyware.Cyberlog-X, NetWorm-i.Virus@fp, Trojan-Spy.Win32@mx, Dialer.Trojan, PSW.x-vir, Tojan Horse, SpyWorm Win32, SpyWormWin32. Automatic download and installation of a rogue antispyware product such as Virus Bursters. Popups (including pornographic popups) are generated even when user is not browsing the Internet. Presence of blinking icons next to computer clock. The icons can generate balloon messages claiming infection. The icons usually looks like a circle with a (?) or a yellow 'danger' triangle with an exclamation mark inside. See samples below:
Running Process Signatures: N/A File Signatures: N/A Registered Dll (Dynamic Link Library) Signatures: N/A Folder Signatures: N/A Registry Signatures: N/A SpyNoMore Collected Residual File Signatures: N/A
| ||||||||||
|
||||