Main » 2011 » Март » 16 » Download adware itself from the agave
12:37
Download adware itself from the agave
Download you've found yourself, and he self-extracting archive. Run exe'shnik opens like WinRar (very similar to the window to look), unpack the files and forget yourself. But through time, with all holes begins to climb advertising that it is not clear how to turn off because it is not clear where it all got started.
It would seem that the classical scheme vparivaniya advari, she has lived for many years and unremarkable. But in Russia, decided to do it differently. Advar now approved by the local anti-virus, spread almost officially engaged in a fairly large and well known company.


A little over a year ago, I knocked one of the partners and said that someone out there wants me to place viruses and to pay money for it. The offer outright to send a timber merchant to retain only what he has called himself a representative of Ahava, and that their virus like as approved by Kaspersky and they will not catch. I was wondering how this could be and I'm allowed to give their contacts, to communicate directly.

The ICQ knocked a Avaks, who called Mikhail Ilyin, the director of something there in the Agave. Spoke briefly about what is proposed:
I pack my all files on their site archiver, obtained exe'shniki that when unpacking like WinRar so that the user will not notice the difference. When unpacking the pop-up window, where among the piles of text has a small paragraph about what the user clicking "continue" agrees to set yourself a certain ad unit, which will then remove. After clicking "Continue" nick put this module, which is somewhere in a day is beginning to show commercials. To me, they say, money will go for clicks over time users that have downloaded a virus on my refkoy will be a lot of clicks will nemeryannom and generally can earn milyon very quickly and without straining. And as advertising will be only a day after installing adware, something no one dopret where it all got started.

To my questions, like, why did it to me voluntarily to ruin your life, why not use your Agave ifolder.ru and as a public company generally may vparivat viruses, I was told that the resource I ditched because the ads they have terrible Related and the user will only be satisfied by the fact that it will be displayed. Ifolder not used because the type of integration is not yet ready (as far as I know, it still is not ready:) and then will prompt users to compress their files by this miracle archiver, but about viruses, so it's generally not a virus, there is such a uninstaller and do all that stuff approved in the Kaspersky Lab antivirus and the advertising module will not respond.

In this case, the question of whether they want to simply substitute its competitors (in my face) or they are just impressed by how Letitbit them for a couple of months ahead of and decided to try to develop by the same methods that caused an angry tirade. Type compared with letitbitom even insulting, saying we have here is the uninstaller, and in general it is not advar simply an advertising module that user agrees to put himself. A competitor, they do not want to expose, and generally they are for them not much interesting work is planned with an mp3 sites, then I just turned up the arm, etc.

Total conversation lasted about an hour, I was convinced (users - shit, what do you care, then the money paid, etc.), threatened (we will go to your competitors, they will earn a lot of money and you will survive the market), hollowed phrases about that is they do not advar that they all head to legal and generally have a good and eternal. Ended up that I promised to automatically detect the presence of their advarey files and delete files, along with users that they have filled in and stopped the dialogue.

I was filled with Russian style naebiznesa even come across sites with their advaryu, but come the crisis and, in general, this story somehow forgotten (apparently in crisis have decided not to exercise activity). After all, could easily have someone left to be called, Mikhail Ilyin, engage in his style (read after several times of his posts on roem.ru) and generally hang noodles.

Read it received at a time when the feedback form promptly inserted sentences make a lot of money, but this time there were referral links, and judging by the writing style, the work is clearly some students. Links lead to the site tmaproject.ru, going and reading a few paragraphs, I immediately remembered last year's dialogue, convinced that he wrote me a really representative of Ahava, and indeed their advar:






At this time, however, open a module called adware, expanded the list of antivirus who do not catch this module: "So, at Kaspersky Labs» TMAgent classified as AdTool - Safe program that shows advertisements. As security TMAgent confirmed his lack of a well-known anti-virus databases, as DrWeb, NOD32, Panda Antivirus, AVG, Avira, Ad-Aware and many others. "

Perhaps, in honor of the crisis reduced the antivirus price for ignoring viruses, Agave and decided to expand the list =)

Surprisingly two things:

1. Is Russia can legally vparivat advar? It is clear that he puts the user type, and that sort of like, you can delete, but there is an explicit fraud. Is the same as that of SMS scams, in essence.

2. Why use antivirus software, which is passed by such a plan software?
Bottom of the add-on this occasion

It would be interesting to look at the advertisers that bought ads in this advare. It is possible for them to sell some there clicks on a completely legal tizerke, but in fact, generate the transitions in such a way here.

Another very interesting to listen to the official commentary from most of Ahava, and from Kaspersky Lab, which is kind of like to be doing software that protects against such programs.

Ps People working in the Kaspersky Lab said that nebylo no ignoring the module that their antivirus did not catch him solely because of their lack of sample. At the moment, adware module caught the latest versions of software and have nothing to fear.
Apparently, Agave pro Kaspersky came up with itself, using the fact that their unit for a while was not in the database.
Views: 491 | Added by: w1zard | Rating: 0.0/0
Total comments: 0
Имя *:
Email *:
Код *: