Archive for the ‘virus’ Category

Facebook User become target of Bredolab

Friday, February 5th, 2010

facebookbredolabBe careful if you receive an email from admin Facebook. Note the email subject New Login System, Facebook Account Update, Facebook Update Tools or Facebook Password Reset Confirmation.

Message size is approximately 105 kb contains the reference that users take through updates to the Facebooknya account. However, when the button is updateusernamepassword would be targeted. clicked, the user will automatically led to a fake website Facebook. There, and

Bredolab viruses, such as fake e-mail virus that causes it. As discussed above, a false website address a variety Facebook. For example: http://www.facebook.com.xxxxx.eu/globaldirectory/Lo ginFacebook.php? 15842706915434780596515904059018022 54672004589860384285 ref = & email = xxxxxxx@xxxx.com This e-mail address is being protected from spambots, you need JavaScript enabled to view it. xxxxx here is a random character.

Curious about the contents? Site includes email content allfacebook the trap:

Vguysville hey,

Because of the measures taken to provide safety to our clients, your password has been changed.

You can find your new password in attached document.

Thanks,
The Facebook Team

When the user fills out a username and password, will appear a new page containing the download link with the account update tools updatetool.exe name. This is the actual file is a virus / trojan that will infect your computer.

This virus attacks only Windows operating systems. Therefore, files created with the name C virus: WINDOWSsystem32sdra64.exe will be hidden, not even easy to remove, even though the user is displaying hidden files though. In addition, also created another file named C: Windowssystem32lowsec, local.ds, user.ds, user.ds.lll. hidden and not easily removed.

To prevent easy. Carefully before opening an email and delete the email with the subject as mentioned above.

Threats at Facebook,Twitter and iPhone

Monday, January 25th, 2010

163041pIn the year 2010, the security threat for users of social networking sites like Facebook and Twitter estimated more frenzied. , Security vendor McAfee spoke. “In 2009 we saw an increase in attacks on web sites that web users use ,” explained one of his spokesmen.
“The number of Facebook users who reach 350 million to make us believe that the year 2010 will carry a security case that the trend is increasing,” the spokesman said. “Writer malware likes and pleased to join the social networking sites, even the activities to its hot spots will continue in the year 2010,” he explained.
Restrictions on Twitter system which only 140 make the user rely  service URL shortcut, like bit.ly, tinyurl.com. This step is then used by the attacker as a ruse for the user.
“This trick will play a more dominant role in 2010. With this trick, they can direct users to a malicious link that is disguised” according to a report written by Dmitri Alperovitch, Toralv Dirro, Paula Greve , Rahul Kashyap, David Marcus, Sam Masiello, Franois Paget, and Craig Schmugar of McAfee Labs.
The success of Apple’s iPhone is also a part of diversity trigger the application. The latest facts, Facebook already offers more than 350,000 active and Apple applications App Store recently reached 100,000 target. As a result, many users blindly distribute the application. Extensive land also facilitate identity theft. User expectations will increase 2.0 Web services also triggered many false services that are hidden is set to steal data

Karperksy Internet Security 2010 passed Real World Anti Virus Test

Tuesday, January 12th, 2010

171605pKarpersky Internet Security (KIS) 2010  stated that has been passed in  the test conducted by AV-Test-leading laboratory based in Germany. Based on the same test, KIS 2010 successfully penetrate their Real World experiment.

Tests conducted included 12 Internet security solutions are popular from different providers differently. Each solution tested against about 10 malware ‘zero-day’ new per 24 hours (malware that just appeared on the internet). The duration of the test until the 60-day test period, and use the device consisting of 600 active samples (including samples of exploits and malware that is distributed via email).

In these tests, KIS 2010 received the highest ratings in tests of the Real World, ranked second in the category ‘malware detection (97.5%) and ranked third in the category’ malware blocking (89.8%) and recorded very few false positive.

Kaspersky achieved achievement is not without reason. “Kaspersky Internet Security 2010 received outstanding results in tests of the Real World because it uses a unique synergy of technologies that effectively complement and enhance each other,” said Nikita Shvetsov (Director of the Anti-Malware Research).

The effectiveness of the protection offered bertolok on two categories, namely ‘malware detection’ and ‘malware blocking’. The criteria used include the level of malware detection, ie the extent to which destructive activities of malware can be blocked and the number of recorded false positive in the face of the collection malicious programs.

The solutions offered Kasperksy allowed to complete the circuit protection mengaplikasia their technologies, including URL filtering and applications that are blacklisted, analysist behavioral, signature-based detection.

However, keep in mind that in analyzing the performance of an antivirus solution, there is only one technologically protection used. For example the signature-based scanning (reactive protection) or proactive protection module.

koobface strike back before Christmas

Sunday, December 13th, 2009

koob

Before Christmas, it seems Internet users should be careful of Koobface malware that can infect a PC user.

Security vendor “Websense Security Labs Threat Network Seeker” has been found that the campaign is now in action Koobface malware using a Christmas theme (Christmas). Koobface latest development has even entered the features of Google Reader.

Koobface own website offers a video posted by “Santa”. In addition, also uses a codec to watch these videos used that encourage users to allow users to install and run the file named setup.exe (SHA1: a2046fc88ab82abec89e150b915ab4b332af924a). These files have been successfully detected 16 of 41 antivirus products, according to VirusTotal observation.

koobface

While in the infected Facebook page, users will see a link to the site ‘ch [removed] cher.ch’ which is infected sites in Switzerland. Users will be directed to a Web site Koobface through malicious Flash movie files in the infected site. If the user runs the infected file, the worm will automatically log into your account Facebook, MySpace and some of their social networking sites, then send a message to all their friends.

This is not the first time Koobface worm attack social networking website, even the same case had been reported several months ago.

Panda Joss Stick Virus

Sunday, November 29th, 2009

Panda Joss Stick

China has been informed about the latest computer worm is a virus update from the Panda Burning Incense. According to a report from McAfee, the virus has infected millions of PCs in the country 3 years ago. Original Panda worm according to McAfee’s also known as Fujacks, which caused damage to coincide with the time when the public aware of online security vulnerabilities, and finally caught the virus writers in 2007.

“The virus is more complex than the rootkit.” Said Vu Nguyen, a researcher from McAfee Labs. The first Panda worm can change icons that have been infected with a pictorial image of a panda holding 3 Joss-Stick. The same image can also be moved to another computer screen, but the main purpose of this worm is to install a Trojan to steal passwords.

As for this latest virus updates will directly attack the PC. According to Nguyen, vendors and Internet users China is now more careful with malware than a few years ago. This is because of the Panda worm.