Quantcast
Channel: ThreatFire Research Blog » Dropper
Browsing latest articles
Browse All 10 View Live

Image may be NSFW.
Clik here to view.

CbEvtSvc.exe Is Not Flash

We are researching a couple of highly prevalent pieces of malware, and may be drawing some links between the two. Thousands of websites have been compromised and are spreading phony...

View Article


Fakealert Droppers

A high number of Fakealert droppers are showing up on the radar today and yesterday. A crack under the name “crack_ver1.454.0.exe” in a “zebradesigner pro.zip” package is being distributed from a...

View Article


Image may be NSFW.
Clik here to view.

Crack.exe

If you find yourself installing and running cracks and keygens that you’re downloading over Limeware, stop what you’re doing. First, stop using cracks and pirated software. Secondly, nothing truly is...

View Article

Koobface flash_udpate.exe Around the World

We are analyzing the binaries and koobface processes and will provide detailed technical information later — this one performs lots of process, system admin, file create/delete activity, and each one...

View Article

Image may be NSFW.
Clik here to view.

South Korea and U.S. Government Sustained DDoS

The botnet driven distributed denial of service attack that started over the weekend has been attacking American agency web sites like the White House web site, the FTC site, NYSE site, FAA, NSA, Dept...

View Article


Image may be NSFW.
Clik here to view.

Cutwail/Pandex reader_s.exe Continues to Deliver Spambots and mmx Evasions...

Cutwail (also known as Pandex) malware is not a new family name on the bot scene. However, the Cutwail/Pandex botnet is described as one of the largest and most active botnets currently known. This...

View Article

Is Someone Stealing Your Search Queries? Why Might They do That?

Banload is a malware name that is typically associated with banking trojan downloaders, but the Banload-detected sample covered in this post is a bit different than the norm.  The MD5 hash for this...

View Article

Image may be NSFW.
Clik here to view.

Cutwail Spamming for Russian Spammers

Spam continues to clog the internet with providers reporting spam stuffing 80% – 95% of all email content en route. It’s an ongoing problem into 2010, so last week we examined the active spambot...

View Article


Image may be NSFW.
Clik here to view.

Windows Defender 2010 FakeAv at the Top of this Morning’s List

The group behind “live-windowsantivirus. com” is having a very busy morning distributing Rogueware XP Internet Security 2010. We grabbed some snapshots for you of the current incarnation of the...

View Article


Image may be NSFW.
Clik here to view.

Koobface Continued…

The Koobface gang’s changing tricks and longevity are noted at a recent USAToday article. They’ve recently upped their activity on a major social networking site and user infections appear to have a...

View Article
Browsing latest articles
Browse All 10 View Live


Latest Images