Easy Money: Program:Win32/Pameseg (Part 1 & 2)

Ink

Administrator
Thread author
Verified
Staff Member
Well-known
Jan 8, 2011
22,361
Nowadays many people believe in the opportunity to achieve great wealth without much effort, not leaving the house, not interrupting their favorite computer games, forums, social networking and so on. This type of opportunity is widely marketed by companies providing paid digital content services. You may have seen online advertising banners such as:

"Make a million bucks without picking your backside off the chair! Vasya Pupkin earned 2000 a day practically doing nothing and it's not the end, you can do more! Earnings over the Internet – what could be easier?!"

In most cases, the offers are based on participation in different multi-level marketing and affiliate program schemes as an Advert. Affiliate program schemes are usually controlled by entities that own different paid services, such as online dating, adult services, paid archives, and so on. Let's look deeper into paid archives as they seem to be the most profitable while remaining legitimate and virtually immune against the law. This is the first blog post in a series that discusses the affiliate program scheme.

Continue reading here:
Easy Money: Program:Win32/Pameseg (Part 1)


In the previous post, we gave an introduction to how file partnership programs work and how they make money off unsuspecting users by charging them for installing software that is actually free. In this post, we'll walk you through a sample of these "paid archives". The following "paid archive" simulates the appearance of the Adobe Flash Player 10 installer. Let's look deeper into this sample and try to figure out what the typical scenario is. We detect this sample as Program:MSIL/Pameseg.G (with SHA1 1929bab927a6e2f6df164dfbf819ce04dd29ad90). It is created by means of the Packer software distributed by the ZipArchive.com file partnership.

Continue reading here:
Easy Money: Program:Win32/Pameseg (Part 2)


Epilogue:

The websites that distribute "paid archives" are usually profitable businesses. Most of them are located in Russia and former Soviet territories, although they accept payments in many countries. For instance, zip-archive.com and zipmonster.ru accept payments from 80 countries, and Centercash.ru accepts from 70 countries. Different affiliate programs offer attractive deals for partners (high "convert rate"), anti-abuse hosting, and rewards for invited Adverts.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top