Browse by Tags

All Tags » In the Wild » General Security News (RSS)

Storm Worm variant now using Kittycard.exe as filename

Kittycard.exe is now of one the filename use by this Storm Worm. Email received today: The new filename is Kittycard.exe: Half of malware scanners via VirusTotal.com will detect it while half did not: For you... to read : The Storm Worm: http://www.schneier...
Posted by donna | with no comments

What's with the malicious PDF file?

Symantec wrote: the PDF file will download ldr.exe file F-Secure reports: The PDF is spiced with CVE-2007-5020 exploit that downloads ms32.exe that downloads more components. So I grab both .exe files (ms2.exe and ldr.exe) and uploaded it to Virustotal...
Posted by donna | with no comments

In the wild: Malicious PDF files; Which AV will detect it?

If you haven't update your Adobe Reader to v8.1.1, you better to do it NOW. The vulnerability is being exploited now and yup, it's in the wild because I received copies already. Screenshots at http://www.dozleng.com/updates/index.php?showtopic...
Posted by donna | with no comments

2 more kitty (storm worm) gone undetected by many scanner

I received similar email last week where 15 out of 32 malware scanners will detect or trigger an alert if found or being downloaded in the system. Today, I got 2 more kitty greetings. Result is 10 out of 32 scanners will detect or trigger an alert: Preview...

Skype Worm Breaks Out in APAC

Symantec and Websense have warned Skype users of a new worm that spreads itself via Skype text messages. Dubbed Chatosky by Symantec, the cycle starts with a Skype user receiving a message offering a file called sp.exe. According to Websense's preliminary...
Posted by donna | with no comments

Worm Alert: Big Yellow; Worm hits computers via Symantec Corp.'s antivirus program

Date: December 15, 2006 Severity: High Systems Affected: Symantec AntiVirus 10.0.x for Windows (all versions) Symantec AntiVirus 10.1.x for Windows (all versions) Symantec Client Security 3.0.x for Windows (all versions) Symantec Client Security 3.1.x...
Posted by donna | with no comments

Rustock: Deep Dive

Rustock, also known as “Spambot”, is a family of back door programs with advanced user and kernel mode rootkit capabilities. Rustock has constantly been in development since around November, 2005. Rustock is a tough threat to combat because of its approach...
Posted by donna | with no comments

Apple OS X gets its first virus

The first virus to target Apple's OS X operating system has been identified in the wild. Leap-A (also known as Oompa-A) spreads via the iChat instant messaging system, forwarding itself as a file called 'latestpics.tgz' to contacts on the infected user...

The Bagles keep on rolling in

The Bagles are continuing to come in. That's what viruslist.com blogged today. As per viruslist.com, there 6 new variants so far. "The first 2 - 3 variants were agressively spammed. The others have been placed on sites and will be downloaded to victim...
Posted by donna | with no comments

Anti-Phishing: Citibank - 'Security Alert on Microsoft Internet Explorer'

Again, a phish that utilizes a good address bar forgery. These are getting very dangerous to unsuspicious customers, because very few obvious clues of phishing are left uncovered. A weak spot in this scam is the e-mail message it's distributed through...
Posted by donna | with no comments