Malware's archive
Posted in October 29th, 2010
by
admin in
0-day,
0day,
Adobe,
adobe flash 0day,
adobe flash exploit,
adobe flash security,
adobe reader,
adobe reader 0day,
adobe reader exploit,
adobe reader vulnerability,
adobe security,
authplay,
authplay exploit,
Exploits/Vulnerabilities,
flash,
Malware,
rss,
Windows Hacking,
zeroday
Well this seems to be a frequently recurring theme, yes there is yet another critical 0day vulnerability in Adobe products – pretty much across the board this time. It was that long ago that a critical flaw in Flash put Android phones at risk. Th…
read more from this topic.....
Posted in October 27th, 2010
by
admin in
0-day,
0day,
belmoo,
Exploits/Vulnerabilities,
firefox,
firefox 0day,
firefox exploit,
firefox-security,
firefox-vulnerability,
liu xiaobo,
Malware,
nobel peace prize,
race condition,
rss,
Web Hacking,
web-security
It’s been a while since Firefox has been in the news, but this is a fairly high profile case involving the Nobel Peace Prize website. It seems there is a race condition vulnerability in the latest versions of Firefox (including 3.6.11) that allow…
read more from this topic.....
Posted in October 21st, 2010
This is a pretty neat attack from the malware pushes leveraging on the ignorance of the average user – which in all honestly is a safe bet most of the time! You could consider it a Social Engineering attack as it’s taking something thatR…
read more from this topic.....
Posted in October 20th, 2010
by
admin in
Countermeasures,
Malware,
malware detection,
nsdecoder,
rss,
Web Hacking,
web hosted malware,
web malware,
web malware analysis,
web malware analyzer,
web-security,
website malware detection tool
NSDECODER is a automated website malware detection tool. It can be used to decode and analyze an URL to see if it host to malware. Also, NSDECODER will analyze which vulnerability has been exploited and the original source address of malware. Functions…
read more from this topic.....
Posted in October 1st, 2010
by
admin in
arrests,
bank fraud,
banking malware,
e-banking,
e-banking fraud,
e-banking security,
financial fraud,
financial malware,
Legal Issues,
Malware,
money mules,
mules,
rss,
Spammers & Scammers,
zeus,
zeus trojan,
zeus trojan arrests,
zeus trojan fraud
Zeus has been around for quite some time, we reported it about it initially back in 2009 when it was noted Zeus could evade anti-virus software. In more recent months it was noted that Zeus has become more focused and variations of Zeus were found to b…
read more from this topic.....
Posted in September 22nd, 2010
by
admin in
Exploits/Vulnerabilities,
Malware,
onmouseover,
rss,
twitter,
twitter exploit,
twitter hack,
twitter hacked,
twitter malware,
twitter onmouseover,
twitter safety,
twitter security,
twitter vulnerability,
twitter xss,
Web Hacking
The big news yesterday was an epic XSS flaw on Twitter that sent the micro-blogging service into chaos. They actually made an announcement during the hack that users should stay off the web-site and use 3rd party services through the API (Software such…
read more from this topic.....
Posted in September 10th, 2010
by
admin in
email worm,
fast spreading email worm,
General News,
here you go,
here you go worm,
imsolk,
malicious screensaver,
Malware,
pdf email worm,
pdf exploit,
rss,
scr,
screensaver virus,
vbmania,
virus
Oh this is a throw back to the 90s, a self-replicating e-mail worm based around a malicious screensaver (.scr) that sends itself to everyone in your address book. It seems this one is spreading fast though with hundreds of thousands of infections. Remi…
read more from this topic.....
Posted in September 3rd, 2010
by
admin in
Countermeasures,
Malware,
malware check tool,
malware checking,
malware detection,
malware hash,
malware hash checking,
malware hash checking tool,
malware hashes,
python,
python script,
rss,
Security Software,
virus total,
virustotal
This program intends to detect a malicious file in two ways; online and offline. It calculates the md5 hash of a specified file and searches it in its current hash set (offline) or on VirusTotal site (online) and shows the result. It has http proxy sup…
read more from this topic.....
Posted in July 15th, 2010
by
admin in
Countermeasures,
General News,
gfi,
gfi antivirus,
Malware,
rss,
Security Software,
sunbelt,
sunbelt antivrus,
sunbelt software,
sunbelt vipre,
vipre
Looks like this is the way business is heading, especially in the software sector. As led by the giants Microsoft, acquisition is the way to get new and innovative software without having to produce it yourself! Sunbelt Blog is one of the few we actual…
read more from this topic.....
Posted in July 9th, 2010
by
admin in
foreniscs,
Forensics,
linux forensics,
linux forensics distribution,
Malware,
malware analysis,
remnux,
reverse engineering malware,
reverse-engineering,
rss,
Ubuntu
REMnux is a lightweight Linux distribution for assisting malware analysts in reverse-engineering malicious software. The distribution is based on Ubuntu and is maintained by Lenny Zeltser. REMnux is designed for running services that are useful to emul…
read more from this topic.....
Posted in July 8th, 2010
by
admin in
ambler,
bank phishing,
banking trojan,
banking-security,
british bank security,
british banks,
cybercrime,
e-commerce,
location specific trojan,
Malware,
Phishing,
regional trojans,
rss,
silon,
Social Engineering,
Spammers & Scammers,
torpig,
trojans,
trusteer,
yaludle,
zeus,
zeus trojan
Well it was inevitable really, I’ve noticed in the last couple of years Phishing e-mails have started to use targeted lists especially for banking sites and the next up of course is trojans developed for specific regions. A security company Trust…
read more from this topic.....
Posted in June 24th, 2010
by
admin in
carding,
credit card details,
credit card numbers,
cybercrime,
cybercrime tools,
Legal Issues,
Malware,
malware trading,
pceu,
police central e-crime unit,
rss,
scammers,
scotland yard,
spammers,
Spammers & Scammers,
stealing bank information,
stealing credit cards,
terry wilson,
trade malware,
zeus trojan
It seems both the US and UK governments have been cracking down pretty harshly on cybercrime operations over the past two years. A number of ‘underground’ forums and cybercrime operations have been shut down including those involving botnet…
read more from this topic.....
Posted in June 22nd, 2010
by
admin in
aussies,
Australia,
belinda neal,
botnets,
cyber-crime,
cybercrime,
Legal Issues,
Malware,
optus,
Phishing,
privacy,
rss,
telstra
So after a year of research and debate, what did the Aussies come up with? A policy to disconnect people from the Internet if they get infected by a virus.. Rather naive isn’t it? Plus if your ISP cuts you off, how exactly are you supposed to res…
read more from this topic.....
Posted in June 4th, 2010
by
admin in
commercial keylogger,
commercial keylogging application,
cyberspy,
cyberspy software,
federal trade commission,
FTC,
keylogger,
keylogging application,
keylogging software,
Legal Issues,
Malware,
privacy,
remote keylogger,
remotespy,
rss
Well this case has taken a while but the FTC won in the end and reached a settlement two years after halting the company from selling it’s “100 per cent undetectable” commercial keylogging application. It’s interesting to see co…
read more from this topic.....
Posted in May 25th, 2010
by
admin in
auscert,
auscert ibm malware,
auscert malware,
Hardware Hacking,
ibm,
ibm malware,
ibm usb malware,
ibm usb virus,
Malware,
rss,
usb drive malware,
usb trojan,
usb virus,
usb worm
Another case of ‘accidental’ malware distribution, remember a while back when Vodafone Spain was Distributing Mariposa Malware, the latest is that IBM handed out malware laden USB drives at a security conference of all places.
Well on the u…
read more from this topic.....
Posted in May 11th, 2010
by
admin in
Countermeasures,
detect malicious pages,
detect malicious web codes,
iscanner,
Malware,
mass defacement,
mass exploit,
mass web exploit,
remove malicious pages,
remove malicious web codes,
rss,
scan web pages,
scan web sites,
securing web applications,
Security Software,
web application security scanning,
Web Hacking,
web-security
iScanner is free open source tool lets you detect and remove malicious codes and web pages viruses from your Linux/Unix server easily and automatically. This is a neat tool for those who have to do some clean up operation after a mass-exploitation or d…
read more from this topic.....
Posted in May 3rd, 2010
by
admin in
botnets,
bots,
cutwail,
General Hacking,
ilove you virus,
iloveyou,
love bug,
loveletter,
malicious botnets,
malicious malware,
malicious viruses,
Malware,
messagelabs,
messagelabs intelligence report,
rss,
rustock,
symantec
So no big surprise here, malware is getting more malicious! It’s good to know though and it’s good that companies out there like Messagelabs, under the watchful eye of Symantec, are trying to measure what is going on in malware land.
The ma…
read more from this topic.....
Posted in April 29th, 2010
by
admin in
bot herder,
bot herders,
botnet,
botnet for hire,
custom malware,
david anthony edwards,
david edwards,
Legal Issues,
Malware,
nettick,
rent botnet,
rss,
t35,
t35 hack,
t35.net,
t35.net hack,
texan hacker,
texas,
thomas james frederick smith,
thomas smith,
trojans,
virus,
worms,
z00k
Another botnet herder bites the dust, the latest news in the malware arena is about David Anthony Edwards from Texas who has admitted he and his accomplice had offered tailor made malware and DDoS attacks for rent.
22,000 zombies is a reasonable number…
read more from this topic.....
Posted in April 23rd, 2010
by
admin in
appsec,
binary tampering,
code injection,
disassemble,
framework modifier,
Hacking Tools,
Malware,
managed code rootkits,
mcr,
modify binary,
Programming,
reframeworker,
rootkits,
rss,
runtime manipulation,
runtime tweaking,
software-security,
virtual patching
ReFrameworker is a general purpose Framework modifier, used to reconstruct framework Runtimes by creating modified versions from the original implementation that was provided by the framework vendor. ReFrameworker performs the required steps of runtime…
read more from this topic.....
Posted in April 20th, 2010
by
admin in
botnet,
botnets,
China,
china conficker,
china conficker infections,
china malware,
cncert,
conficker,
conficker b,
conficker botnet,
conficker virus,
conficker worm,
ddos,
denial-of-service,
dos,
Malware,
rss,
shadowserver,
trojans,
viruses
Conficker has been giving us all headaches for quite some time now, the latest news it that China hosts up to 28% of the World Conficker infections at its peak.
7 million separate hosts infected with Conficker at the end of 2009, that’s more than…
read more from this topic.....
Posted in April 9th, 2010
by
admin in
ads,
alternate data streams,
clean ads,
clean alternate data streams,
Forensics,
Malware,
rootkit-detection,
rootkits,
rss,
stream armor,
streamarmor,
windows ads,
windows forensics,
Windows Hacking,
windows malware,
windows rootkit,
windows-security
StreamArmor is a tool for discovering hidden alternate data streams (ADS) and can also clean them completely from the system. It’s advanced auto analysis coupled with online threat verification mechanism makes it the best tool available in the ma…
read more from this topic.....
Posted in March 31st, 2010
Remember this cute little purple ape? If you’re a Linux user, you might not, so let me enlighten you a bit. This little guy is the “Bonzi Buddy” ape. He was one of the earliest malware/spyware/crapware programs for the Microsoft Windows platform. Arguably the cutest of his breed, BonziBuddy became a widespread problem for Windows users for years. more>>



read more from this topic.....
Posted in March 18th, 2010
by
admin in
botnets,
Hardware Hacking,
htc magic,
htc magic malware,
htc magic mariposa,
htc malware,
htc mariposa,
Malware,
mariposa,
mariposa botnet,
mariposa malware,
panda security,
rss,
s21sec,
trojans,
viruses,
vodafone,
vodafone malware,
vodafone mariposa,
vodafone spain
Just a week after supplying an infected Android phone to a worker at Panda Security, Vodafone Spain has once again managed to pass out a malware infected HTC Magic phone to a researcher at S21Sec.
The write-up on the Panda Research Blog, including tech…
read more from this topic.....
Posted in March 11th, 2010
by
admin in
botnet sting,
botnet takedown,
botnets,
ddos,
dos,
Malware,
mariposa,
mariposa botnet,
privacy,
rss,
scansafe,
trojans,
troyak,
Troyak ISP,
viruses,
zeus,
zeus botnet,
zeus trojan,
zeuswatch
We wrote about Zeus a while back, a nasty trojan which can evade detection by Anti-virus software and is ranked as the number 1 trojan infector by numbers.
About a week ok a massive sting operation took down large parts of the Mariposa botnet in Spain…
read more from this topic.....
Posted in March 9th, 2010
by
admin in
arucer.dll,
backdor,
energizer,
energizer duo,
energizer duo backdoor,
energizer duo trojan,
energizer usb battery charger,
Legal Issues,
Malware,
port 7777,
rss,
trojan,
usb battery charger,
virus
There has been a number of interested stories lately especially related to hardware, the latest doing the rounds is this one where a seemingly innocuous USB battery charger has been installing some nasty remote control software onto users systems.
The …
read more from this topic.....
Posted in January 25th, 2010
by
admin in
Countermeasures,
defensio,
Facebook,
facebook firewall,
facebook malware,
facebook scam,
facebook security,
facebook spam,
koobface,
Malware,
rss,
Security Software,
threatseeker,
web app firewall,
web application firewall,
Web Hacking,
web malware,
web-application-security,
web-security,
websense
There have been quite a few security concerns with Facebook, especially with the amount of personal information it collects on it’s users.
Of course there is Koobface and it’s many variants which have been propagating all kinds of spam thro…
read more from this topic.....
Posted in December 22nd, 2009
by
admin in
britanny murphy dead,
brittany murphy,
brittany murphy dies,
brittany murphy malware,
brittany murphy scam,
brittany murphy spam,
brittany murphy virus,
fakevimes,
Malware,
rss,
scammers,
Social Engineering,
spam,
Spammers & Scammers,
virus,
worm
It seems to be a trend now, whenever someone famous dies some kind of malware or phishing scam will pop up playing on their death with the usual social engineering aspect.
The most memorable one recently of course was the passing of The King of Pop …
read more from this topic.....
Posted in November 23rd, 2009
by
admin in
Apple,
apple iphone,
apple iphone security,
apple iphone virus,
Australia,
default-password,
Exploits/Vulnerabilities,
iphone,
iphone malware,
iphone security,
iphone ssh,
iphone virus,
iphone worm,
jailbreak,
jailbroken,
jailbroken iphone,
malicious iphone virus,
malicious iphone worm,
Malware,
rss
It’s a little less than 2 weeks since the Jailbroken iPhone Users Got Rickrolled and as I thought a similar worm has been seen in the wild – but this time with malicious intent.
As the rickrolling incident showed, even the more savvy users …
read more from this topic.....
Posted in November 11th, 2009
by
admin in
Apple,
apple iphone,
apple iphone security,
apple iphone virus,
Australia,
Exploits/Vulnerabilities,
iphone,
iphone malware,
iphone security,
iphone virus,
iphone worm,
jailbreak,
jailbroken,
Malware,
Rick Astley,
rickroll,
rickrolled,
rss
The ‘big’ news this week was the first self-replicating worm hit the iPhone, it only seemed to be spreading in Australia though and only worked under a specific set of circumstances.
It only effects iPhone users that have jailbroken their p…
read more from this topic.....
Posted in November 9th, 2009
by
admin in
Facebook,
facebook security,
facebook trojan,
facebook virus,
facebook-privacy,
Malware,
online malware,
privacy,
rss,
spam,
symantec,
trojan,
whitewell,
worm
Facebook has had it’s fair share of security woes and the latest is the discovery of a new Trojan that uses Facebook to communicate.
Interesting that it’s using the Facebook notes feature to communicate depending on title/subject of the not…
read more from this topic.....