Tag: trojan

  • File encryption blackmail scam returns

    Kaspersky warns of new and nasty data-ransom trojan. Malware analysts at Kaspersky Lab have warned of the return of the ‘Gpcoder’ trojan, a nasty piece of ‘ransomware’ which encrypts victims’ files and demands money for the decryption key. Previous outbreaks of the scam, seen sporadically since the first appearance of such nasties in 2004, have…

  • Flash exploit used to steal gaming passwords

    Despite initial panic, threat no longer believed to a zero-day exploit. In the past few days, thousands of websites have indirectly been serving malicious Adobe Flash (.SWF) files. It is believed that legitimate sites have been hacked via SQL injection to include a script that causes browsers to redirect to sites hosting malicious .SWF files.…

  • ‘Kraken’ monster botnet causing controversy

    As latest botnet scare debated, Storm keeps on blowing. Recent reports of a massive botnet, apparently sneaking its trojans past security software and far outnumbering better-known infections such as ‘Storm’, have been dismissed as hype by some analysts but firmly upheld by the researchers who first alerted on the threat. The botnet has been dubbed…

  • HP ships infected USB keys

    Autorun worms found on batch of server setup devices. A batch of USB thumb drives containing software intended to assist in the setup of servers have been found to contain some nasty extras, in the shape of worms using the autorun feature to infect systems connected to the removable devices. The drives were shipped to…

  • Google Groups and Blogspot used to serve malware

    Company finds own IP address to be serving most malware. Malware writers have created thousands of Google Groups with the sole purpose of serving malware, Sunbelt reports . On the Groups pages, visitors are shown several images with explicit pornography, as well as what looks like an embedded YouTube video. However, when clicking on the…

  • Legitimate program becomes trojan downloader

    Website of FlashGet attacked; malicious ‘update’ automatically downloaded. By hacking into the website of popular Windows download manager FlashGet , cybercriminals have managed to turn the software into a trojan-downloader. Like many programs, FlashGet regularly connects to its developer’s website to see if there are any updates to be installed. However, attackers have managed to…

  • More PDF exploits seen in wild

    Adobe Reader and Acrobat flaws open way for further document attacks. A string of vulnerabilities in Adobe ‘s PDF viewing and editing software, disclosed late last week by Adobe and iDefense , have been exploited by malicious attacks using PDF files to launch malware. The flaws, which include several buffer overflows, a library path vulnerability…

  • Fake security blogs lead to malware

    Blogger sites play on fears to draw victims to porn, trojans. According to a report from Aladdin , numerous fake security blogs have been set up on the Google -owned Blogger blogging system, some carrying security news items taken from other sites including Aladdin ‘s own website, and all redirecting to unrelated content, with porn…

  • Phishing danger increases as Storm botnet is hired out

    Smart new trojan and Storm diversification add to online banking risk. The dangers of banking online grew significantly in past weeks, as portions of the ever-expanding Storm botnet were hired out to run phishing campaigns and a sophisticated new trojan was discovered, capable of targeting 400 different online banking systems around the world. With the…

  • Hundreds of legitimate websites being hacked into

    New mass infection leaves security researchers puzzled. Web security company ScanSafe has reported a new mass infection of websites, which it claims accounts for 15% of the web traffic the company blocks. A wide range of sites, mostly operated by small firms based in the UK, were seen to be serving malicious JavaScript to visitors,…