CbEvtSvc.exe Is Not Flash
We are researching a couple of highly prevalent pieces of malware, and may be drawing some links between the two. Thousands of websites have been compromised and are spreading phony...
View ArticleFakealert Droppers
A high number of Fakealert droppers are showing up on the radar today and yesterday. A crack under the name “crack_ver1.454.0.exe” in a “zebradesigner pro.zip” package is being distributed from a...
View ArticleCrack.exe
If you find yourself installing and running cracks and keygens that you’re downloading over Limeware, stop what you’re doing. First, stop using cracks and pirated software. Secondly, nothing truly is...
View ArticleKoobface flash_udpate.exe Around the World
We are analyzing the binaries and koobface processes and will provide detailed technical information later — this one performs lots of process, system admin, file create/delete activity, and each one...
View ArticleSouth Korea and U.S. Government Sustained DDoS
The botnet driven distributed denial of service attack that started over the weekend has been attacking American agency web sites like the White House web site, the FTC site, NYSE site, FAA, NSA, Dept...
View ArticleCutwail/Pandex reader_s.exe Continues to Deliver Spambots and mmx Evasions...
Cutwail (also known as Pandex) malware is not a new family name on the bot scene. However, the Cutwail/Pandex botnet is described as one of the largest and most active botnets currently known. This...
View ArticleIs Someone Stealing Your Search Queries? Why Might They do That?
Banload is a malware name that is typically associated with banking trojan downloaders, but the Banload-detected sample covered in this post is a bit different than the norm. The MD5 hash for this...
View ArticleCutwail Spamming for Russian Spammers
Spam continues to clog the internet with providers reporting spam stuffing 80% – 95% of all email content en route. It’s an ongoing problem into 2010, so last week we examined the active spambot...
View ArticleWindows Defender 2010 FakeAv at the Top of this Morning’s List
The group behind “live-windowsantivirus. com” is having a very busy morning distributing Rogueware XP Internet Security 2010. We grabbed some snapshots for you of the current incarnation of the...
View ArticleKoobface Continued…
The Koobface gang’s changing tricks and longevity are noted at a recent USAToday article. They’ve recently upped their activity on a major social networking site and user infections appear to have a...
View Article