Archive for the 'Viruses' Category


Linux network worm…

Monday, November 7th, 2005

There is a linux network worm (virus) in the wild, which I’ve mentioned already in an earlier post. I did want to take a few moments to highlight this and dispell a few myths. (This is the first linux virus I recall seeing over at SARC in the last couple years….) Myth #1) linux doesn’t […]

XML-RPC for PHP vulnerability attack attempts

Monday, November 7th, 2005

Incidents.org is reporting on attacks against a recent XML-RPC vulnerability in PHP. This would affect users of PostNuke, Drupal, b2evolution, Xoops, WordPress, PHPGroupWare and TikiWiki. As far as I know there are fixes for each of these in the most recent versions of the software.    Send article as PDF   

Botnets and spyare

Friday, November 4th, 2005

“It outta be illegal” is the first thing I usually hear as I start the long process of sanitizing a spyware infested windows machine. The fact is some parts of it ARE, some are just ethically questionable. The area that’s against the law is the part that involves tacking control of someone elses computer without […]

Microsoft Updates for October and bugs on the loose

Wednesday, October 12th, 2005

Well, it’s been a bit since a post here, but if you haven’t already patch your systems with Microsoft update, as new updates were released yesterday. Incidents.org is reporting rumors of bugs in the wild. Everyone KNOWS the window between vulnerability and exploit is getting shorter and shorter, so if you have a windows system […]

More on the Zotob/Mytob identity theft ring

Thursday, September 1st, 2005

The Security Fix has reported on the unraveling of a ring of identity theives after the arrests of the writers of the zotob and mytob worms. Apparently they have leads on about a dozen different people following the arrests last week of the suspected virus writers.    Send article as PDF   

A virus writer talks….

Monday, August 29th, 2005

Along the lines of “Wishlist of Spyware Slime” that I referred to last week, it appears there’s a chat transcript out from before the arrest of the suspected writer of the mytob and zotob worms. The security fix has the details.    Send article as PDF   

FBI nabs Zotob and Mytob authors

Friday, August 26th, 2005

I’m impressed, it looks as though the FBI has announced the arrest of the authors of both the Zotob and Mytob viruses. Of course Zotob was in the wild in the last 2 weeks. This is really very good news as it is rare for virus writers to be identified and captured. Maybe the FBI […]

The end of antivirus definition updates?

Thursday, August 25th, 2005

Well, frankly, there has been talk of the end of definition based antivirus scanning for years. You see the achilles heel of any AV scanner is that it has to have signatures of what known viruses look like, so there will always be a reflex window, where there’s a new unknown virus that people are […]

Zotob may affect XP Service pack 1 systems

Thursday, August 25th, 2005

There’s an eweek article indicating the zotob family of worms could affect Windows XP SP1 systems as well as the Windows 2000 systems that are currently affected. Since the original outbreak it’s been reported that there were certain circumstances that an XP system could be compromised, this seems to back that up.    Send article […]

Another Dumaru variant

Wednesday, August 24th, 2005

Sunbelt has found another keylogger in the dumaru family and has updated their free tool to scan for it and clean it up. This is the same family of trojans/keyloggers that contributed to the large ID theft discovery they made earlier in the month.    Send article as PDF   

Google
 
Web www.averyjparker.com