Author Topic: What is BrowseFox and why avast! does not detect?  (Read 2605 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33900
  • malware fighter
What is BrowseFox and why avast! does not detect?
« on: July 19, 2014, 11:06:55 PM »
https://www.virustotal.com/nl/url/1e2aff42b1094085cb044d76dd1bfd7cb0d9e8000b5c47011c9a87e7ca745cf9/analysis/1405803599/
and file detection (8 detect) https://www.virustotal.com/nl/file/d50b78644377447d1fcf2404ddbe6254904ada6372e91568c8c301a722cd3df8/analysis/1405718780/
DrWeb's URL Checker neatly detecs:
htxp://install-cdn.browseburst.com/setup.exe?crc=430b0d60 is in Dr.Web malicious sites list!

Checking: htxp://install-cdn.browseburst.com/setup.exe?crc=430b0d60
Engine version: 7.0.9.4080
Total virus-finding records: 5375897
File size: 2.04 MB
File MD5: 2dd71c6a3702ef0832e4fd198036cb44

htxp://install-cdn.browseburst.com/setup.exe?crc=430b0d60 infected with Trojan.BPlug.76
5 av vendors flag -> http://zulu.zscaler.com/submission/show/38d7b6249737d370e5b3501851387fd6-1405803798

pol
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!


Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33900
  • malware fighter
Re: What is BrowseFox and why avast! does not detect?
« Reply #2 on: July 20, 2014, 02:06:59 AM »
Hi Pondus,

What brings this into the category of to be detected by normal av is that junk and crap that cannot be normally uninstalled via the configuration uninstall method, should be flagged as malcode. These BHO search hijackers to score cyber-criminal fraudulent clicks are a pain in the proverbial behind for the average user and for cleansing a run of special tools like AdwareCleaner and junkware remover is required, else you cannot get the browser settings and altered registry right. BHO Browser Search Hijackers I consider to be malcode scam, despite what the developers may say. This is parasitic junk-ware and a form of stealing income from the decent ad-launchers.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!