Quick Links: SpywareGuide Greynets Blog | SpywareGuide Product Database | SpywareGuide Company Database | SpywareGuide Categories
Search SpywareGuide Database & Site
Security Email Alerts & Updates
SpywareGuide powered by FaceTime Security Labs
Full Name:
SpywareNo! Websearch   Read More
Type: Miscellaneous Security
Also Known as: Spyware No!
Created by: SS Development
SG Index: 5 [Explain]
Removal tools: List of products that detect/remove/protect against SpywareNo!:
  • Desktop Anti-malware: Pro User: X-Cleaner
  • Control IM and P2P use, block spyware and other malware: RTGuardian
  • Endpoint Spyware Remediation: Greynet Enterprise Manager
  • IM, P2P control, malware prevention and web filtering in single appliance: Unified Security Gateway
  • Category Description: These are usually anti-spyware or security software applications that use various forms of deception and/or unethical means or show a history of negligent false positives to goad the end user to make a purchase.

    In some cases these applications maybe downloaded with some form of unwanted software at which point the rogue application is offered to the customer as a way to remove the unwanted software.
    Official Description: Rogue Anti-adware application
    pqnelhleyy 26673f10 488363dd
    Changes windows policy settings.
    Displays a warning from the system tray that your computer is infected with spyware. Will not let you remove the spyware unless you buy the full version.
    Changes the desktop wallpaper with a warning message."Your System Is Infected"


    Comment: Found bundled with 7 other adware products including a dialer from another website. The infection comes in the guise of winlogin.exe from this site: vxiframe.biz/adverts/progs/winlogon.exe. If you Google the file name it will yield a perfectly legitimate file from Windows. However, the contents of the file refer to this location C:\Program Files\SpywareNo\SpywareNo.exe.
    Screenshots:
    SpywareNo! Fake warning in the system tray
    SpywareNo! Main Screen of SpywareNo!
    SpywareNo! Warning message issued by Spywareno!
    SpywareNo! Fake message generated from SpywareNO!
    Information URL: http://www.spywareno.com
       
    Manual removal: After removing with X-cleaner or Regblock, you will have to edit some registry settings.

    1.Click on the start button
    2.Click on run
    3.Type in regedit and click ok
    4.When regedit opens, browse to each one of the following keys and in the right pane change the data to 0.Right click on the "Name" choose "modify" and change the Value Data to 0

    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop "NoAddingComponents"


    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop "NoChangingWallpaper"


    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop "NoComponents"


    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop "NoDeletingComponents"


    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop "NoEditingComponents"


    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop "NoHTMLWallPaper"


    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer "ClassicShell"

    5.After changing the policy settings, browse to the Windows directory and delete the file "desktop.html"
    6. Rebott computer

    Click here to leave feedback for this product

    Help with the BUST!
    Click here and give us what details you have and let our international research team take it from there. If you desire your report will remain anonymous.
    Recent Blog Posts
  • Homer's Odyssey
  • Homer Simpson and the Kimya Botnet
  • Twitter Spam
  • Malware Install Hides Behind Fake Blue Screen Of Death
  • More Websites Asking For MSN Logins...
  • How Can I Find Them? They Haven't Gone Missing!
  • "Interesting" Advert Placements On Facebook
  • Content Scrapers And Security Blogs
  • Your 419 Mail Roundup
  • Social Networking: When It All Goes Horribly Wrong
  • Recent Modifications
    2008-7-18  SmsDialer
    2008-7-18  winvestigator
    2008-7-17  Internet Exploiter
    2008-7-15  Snapshot Spy
    2008-7-14  FlashGet
    2008-7-12  OnlineRegistryScan.org
    2008-7-11  Gator
    2008-7-10  Kimya
    2008-7-9  Fake.AV
    2008-7-8  Proxy based anonymizers
     

    Site EULA | Site Map | Contact Us | About Us | Site and Spyware FAQ | Advertise | RSS Feeds  | Link To Us | SpywareGuide Japan Japanese

    © Copyright 2007, FaceTime Communications, Inc. All rights reserved.