McAfee Research BlogFakeAlerts UncoveredJuly 2nd, 2009
Generic Rootkit.d Strikes Again in New VariantJune 29th, 2009
Michael Jackson News Affects Web TrafficJune 26th, 2009
Bad News Offers Opportunity to Spread MalwareJune 25th, 2009With the current news about the deaths of Farrah Fawcett and Michael Jackson, it’s a good idea to remind our readers to beware of blackhat attempts to distribute malware to anyone looking for news. Every time a disaster happens or news about some celebrity reaches the media, malware writers try to take advantage of it. [...] Sex the Bait in Mass Orkut CompromiseJune 23th, 2009
More Password-Theft ShenanigansJune 23th, 2009Recently, my colleague Pedro Bueno wrote about “dumb” malware authors hardcoding their login credentials into their password-stealing Trojan. The malware he referenced, PWS-Banker.gen.i, ostensibly came from Brazil. Today, we found the same negligence in a similar piece of Chinese malware detected as PWS-Banker.gen.de. When run, the password-stealing Trojan queries for the infected host’s IP address using three web-based IP address-lookup services. It [...] DDoS Not the Most Political Way to ProtestJune 16th, 2009So, Iran had elections this weekend. Some people don’t agree with the results. As a consequence, some people are organizing DDoS attacks against Iranian websites, more precisely: http://www.leader.ir/ http://president.ir/ http://www.irib.ir/ http://www.iribnews.ir/ and some specific URLs on those domains. No guys, that’s not the right path and, as it is a malicious activity, we are detecting the tools being distributed to create [...] Worms Dig Further Than Thumb DrivesJune 11st, 2009Most every day I see AutoRun worms such as this one. You may know the kind, the worms that are designed to replicate onto removable drives. There is certainly no shortage of these little monsters. Often the worm, although problematic itself, is just the harbinger of potential doom. More malicious malware obtained by these worms [...] Spammers Take Advantage of Air France CrashJune 11st, 2009
Dumb Malware Authors Cause More Damage Than Smart OnesJune 11st, 2009I don’t really know which is worse: a dumb or a smart malware writer. Brazilian malware writers fall into the first category: bad coders and dumb. It’s as simple as that. While checking a very recent PWS-Banker Trojan (the malware that steals banking information), I came across a variant. This one targets three Brazilian banks–Bradesco, Itau, [...] Zero-Day Exploit Leads to Apparent SuicideJune 10th, 2009This is tragic news, indeed. We have heard of software flaws costing customers hefty amounts of money, man hours, bandwidth, disk space, etc. But now the cost has reached an unprecedented level–causing HyperVM’s creator to apparently commit suicide. The problem started earlier this week, when a large web host company that relied on HyperVM to [...] ATM Malware Makes Withdrawals in RussiaJune 10th, 2009
Avoid Housecalls From Rogue ‘Malware Doctor’June 5th, 2009
New McAfee Whitepaper on Browser AttacksJune 4th, 2009Today we at McAfee Avert Labs released an excellent paper on browser attacks. Written by Christoph Alme, this paper deals with the many complexities of browser security and attacks. From the paper: Web Browsers: An Emerging Platform Under Attack “The widespread use of highly interactive “rich client” web applications for e-commerce, business networking, and online collaboration [...] Social Engineering Aids Malware DeliveryJune 2nd, 2009
|







