Archive for the 'Viruses' Category


Microsoft Security Bulletin Email

Monday, December 12th, 2005

There is a trojan making the rounds that is acquired by clicking on links in an email. That’s not necessarily new, however…. this email represents itself as an authentic-looking Microsoft security bulletin and the links are supposedly to updates (sorted by Windows version.) It’s important to point out that Microsoft does not send registered users […]

Another interesting spyaxe note

Saturday, December 10th, 2005

Incidents.org has a note on a recently noted trojan.spaxe.exe, that when on a system will mimic the windows notification dialogue “bubble” near the system tray with the following text. “Your computer is infected! Windows has detected spyware infection. It is recommended to use special antispyware tools to prevent data loss. Windows will now download and […]

F-secure list of sober virus urls

Saturday, December 10th, 2005

When the news was first out that an antivirus firm (f-secure) had cracked the psuedo-random algorithm that the sober worm uses to determine where to download “updates” from, they said that they had previously notified German authorities where the free hosting sites were located so that they could deal with the sites. I did find […]

More details on Sober worm

Friday, December 9th, 2005

There’s a bit more detail in this betanews article on the sober worm. They basically say that the next expected “release” is January 8th, that f-secure has cracked the “code” of the worm. You see it appears that the URL’s that new versions of the worm are downloaded from are not hardcoded, but “psuedorandom” and […]

Interesting vector for browser vulnerability exploit…ebay

Wednesday, December 7th, 2005

incidents.org has received a tip on an ebay item that contained some malicious script… ISC reader Gareth Attrill pointed us to an eBay auction that has some escaped HTML code that sneaks in a link that tries to get a trojanized .jar (usage.jar) file loaded on anyone who loads the listing. The latest .dat for […]

New variation of Sober virus coming in January

Wednesday, December 7th, 2005

Now, we seem to be getting “coming attractions” previews in virus-land…. Anyway, I’ve read at several sources that we are to expect a new variation on the sober worm around January 5th, 2006. It’s said that the date was chosen to mark the formation of the Nazi Party. In the past, variants have spouted pro-nazi […]

16,000 new viruses this year

Tuesday, December 6th, 2005

This is for all those people that say to me. “There haven’t been any new viruses lately have there?” It’s really amazing to me that people think if it’s not on the national news it doesn’t happen…. According to Pc Pro, Sophos has reported that 16000 new viruses have been added to their database this […]

AIM worm in the wild

Monday, December 5th, 2005

There was an article in the last few days about Instant messengers being a tempting new vector for viral infections… Well…. Incidents.org has information on a new AIM worm seen in the wild. It doesn’t travel via a security hole, but uses the good old standby of social engineering to get from place to place. […]

MS IE Javascript exploit for zero-day (0-day) vulnerability

Wednesday, November 30th, 2005

An exploit for last weeks zero-day (0-day) javascript vulnerability in Microsoft’s Internet Explorer is in the wild. I saw this post from Sunbelt a couple nights ago go up and disappear, at the time I didn’t have long enough to read it… It’s back today and there are instructions for mitigating the risk. However, there […]

Viruses and worms can come in from many directions

Tuesday, November 29th, 2005

For a long time, email was the primary vector for viruses, before that floppy discs carried bugs from pc to pc. Then came network worms exploiting windows security vulnerabilities which led to the rise of firewalls and the increase in viruses piggy-backing into the system through browser bugs. But, any program that listens for data […]

Google
 
Web www.averyjparker.com