New Rogue, Again – AntiVermins

October 17th, 2006 by AndyAtHull

AntiVermins

And suprise suprise (I wish that show was back on our screens….NOT) this rogue is from russia and ESTDOMAINS INC:-

Registration Service Provided By: ESTDOMAINS INC
Contact: +1.3027224217
Website: http://www.estdomains.com

Domain Name: ANTIVERMINS.COM

Registrant:
N/A
Alex Konchekov (alex.konchekov@gmail.com)
Russia, 119334, Vernadskogo pr, 16-67
Moscow
Moskovskaya oblast,119334
RU
Tel. +007.3100240

Creation Date: 02-May-2006
Expiration Date: 02-May-2007

Domain servers in listed order:
ns2.antivermins.com
ns1.antivermins.com

After being given a crap name this rogue shows all the hallmarks of similar rogues. And their spelling on their web-page is far from accurate!

If you have had this rogue on your system and want it removed please visit our forums (navigate to the designated area) for free help in removing it all. Or you can discuss anything related to this rogue here.

Update – Removal guide now here. And this rogue also goes by the name of AntiVerminser.

Comments (20)

  1. milligansghost says:

    Oh wonderful another in the long like of that type a nasty little system ripper dont it make you Sick that they never seems to stop with the same brand of Crapware….

  2. AndyAtHull says:

    If you was to stop this. The net would be a better place for sure. I think these last few years have shown it has been the years of rogues – Oh that and botnets.

  3. Rouge AS apps, fake codecs, malicious installers. Never ending flow of sewege coming from ESTDOMAINS.

    As long a people are willing to part with their hard earned cash and fall for these scams; we will always have a steady flow of poeple looking for help in removing this stuff.

  4. Anononymous says:

    I recently obtained This Thru the use of myspace. Im in the process of removing, hoping all goes well. 12-23-06

  5. mickey_pl says:

    so, it was this ANTIVERMINS crashed my system :/ i was downloaded this shit with Norton Internet Security crack (some .exe with cd-keys to extract).

    BIG THANKS for help and removal guide boys from Security Cadets, and thats all for free… you are COOL!

    greetings and thx again!

  6. water says:

    this rogue really sucks!

  7. Twi$teD says:

    I fell for the myspace trick. At least I’m learning somthing new in the process.

  8. So Lost says:

    Oh god. I got this through Myspace…and I’m in sooo much trouble trying to get rid of it.

  9. AndyAtHull says:

    Register in our forum and get specialist help for free. No charge, nothing. We have Micrsoft MVP’s and ASAP members waiting to help.

  10. Tom says:

    yeah i got this from damn MySpace also, trying to remove it now…

  11. pcin bangor says:

    hi guys

    id appreciate any help ys can give to get rid of this crap antivermins

    regards

  12. AndyAtHull says:

    Hi,

    You have two options. 1) Follow the self-help guide in this forum and look for the required antivermins guide:

    http://forum.securitycadets.com/index.php?showforum=38

    2) Or you can post to the link below and get step by step help with a trained malware fighter:

    http://forum.securitycadets.com/index.php?showforum=2

    You will have to register if you want to post. It’s free. Either way we recommend posting and getting advice from a trained person. We can then also check and advice on what to do and what not to do.

    Andy

  13. Mattor says:

    I manually removed most of this little cheeky thing but oddly enough the only thing left is the “system alert” icon flashing in my system tray, which links to the antivermins website once clicked. Scans with the “spy hunter” program doesn’t pick anything else up. So it’s more of a nuisance than anything else.

  14. AndyAtHull says:

    Removing it manually cannot guarantee all files are gone. Infact I doubt they all are. I strongly recommend to use the guide or seek assistance in our forum.

  15. peter says:

    DAMN, i got this through downloading a codec to watch a movie a click on at bored.com ahhhh

  16. Gavin says:

    I have this pop up from my tool bar at the bottom right of my screen. It says that I have a virus and someone is trying to accress my computer. I click on it and it is taking me to different websites to download their software. one of which being this antivermin site. I have run a norton’s scan and it isn’t picking anthing up. can anyone help? and tell me what is happening.

  17. AndyAtHull says:

    Please red my previous comments on getting help.

  18. Dartster says:

    I got this antivermins trojan, took some time to get rid of it. It was like wrestling with a snake. It took over my homepage and started with the scare tactics, directing me to pay for the program to remove this malicious trojan. It was tough going but managed to download spybot and a few others. They all would isolate the trojan and not remove them. Then comes the pitch for cash, about $40.00 for this service.And while the trojan is in quarantine, you get annoying pop ups to remove the trojan, ie register and pay! it’s all about reaching into your pocket.The flashing icon is a program that can be uninstalled. So the program I have to keep is windows Defender, which is ok but the real good free spyware killer is:”Spyware Terminator”, it comes with an anti virus scan also, it also has a shield to watch and intercept bad stuff when you surf. This was a wake up call. There are some sites to stay away from and watch what you click on.

  19. AndyAtHull says:

    Dartster,

    Just look at the following:

    http://spywarewarrior.com/rogue_anti-spyware.htm#spyterm_note

    Although it is not listed there. I still stick to what I know and what many other experts know. The method we use gets used on many help forums like ours for a reason, it works and works well.
    Whilst using programs like Spybot are not bad. It cannot be sure to have fully removed the infection. For infections like smitfraud you need specialised tools. And methods.

    We certainly don’t recommend the method you followed. For Antivermins(er) we recommend the following method:

    http://forum.securitycadets.com/index.php?showtopic=813

    Regarding what this tool is about. Yes it is all about money. Infact some of these programs are clean. It is the codecs that cause a problem. Or other methods of theirs.

    I hope you found this usefull.

    Andy

  20. Dartster says:

    Thanks Andy,

    That looks a very comprehensive method for malware removal. I have scanned with several different programs and no infections found so at this time am satisfied; thanks again.

Leave a Reply

Download SCars (Beta) v0.6.7b2


Download SCars

Click here for the secondary mirror.


See the FAQ to become a SCars tester.


Testimonials for SCars

  • "SCars is probably one of the better programs I have in my arsenal to help keep people up to date and cleaned up. Yes, you could tell people to run cleanup programs once a week. Or you could get SCars to remind them!" - Olrik Lenstra
  • Contact us to add yours.