Archive for Security Software

Trend Micro web site falls victim of Web hack

Malicious software writers are searching new means to attack end user and infect end user PC / Notebook with Trojans / malware and such Malicious software. One of the common and effective way which they have adopted since early 2004 is to compromise any social networking site running phpBB / SMF or such bulletine board software and mass attack on the users.

Coputer worm

The way is very simple, 1st infect a trusted web site, and then user it spread the Malicious code in to the end user system.

As per Security Giant Mcafee recent wave of attacks, which has started just a week ago, already have infected over 200,000 web sites which includes various social networking site running phpBB and ASP. Even this wave of attack manages to infect and compromise a leading web portal of one of the major Security firm, Trend Micro.

Computer Virus

A Trend Micro spokesman confirmed to InfoWorld that the company’s site had been hacked Thursday, saying that the attack took place earlier in the week. “A portion of our site — some pages were attacked,” said Mike Sweeny, a Trend Micro spokesman. “We took the pages down overnight Tuesday night — and took corrective action.”

Protect your Windows PC / Notebook

I have seen for many non tech PC users its a real headache as with ever growing PC / Windows vulnerability threats, How can one protect their windows ??

To many, it seems a really huge task with so many heavy computer terms, such as Malware / SpyWare / BOTs / Browser hijackers / Adware / Worms, Virus, and so on…

What really threatens your PC ??

To sum up the question the one word answer is Malwares and malicious softwares… Any software which is designed to harm your PC is called Malware… All this names, Virus, Worm, Spyware, Adware, BOTs, Spam, etc are all malwares…

Where as, when a software design to carry out certain tasks, which may harm your PC but is not deployed with that intention can be called a malicious software…

For example IP sniffers, or PORT scanners…

So what do these terms mean ??

Click to continue reading “Protect your Windows PC / Notebook”

Virus Found - Possible Threat “Trojan downloader”

Well again I come across to a threat which is detected by few AVS, this time including Kaspersky Scanner as “Trojan.Win32.Qhost.ot“, however other front line paid scanners, such as, Norton, NOD32 (ESET) and one of the trusted Free scanner Avast fails to detect the threat….

File Crypted.exe received on 11.05.2007 17:40:04 (CET)
Antivirus Version Last Update Result
AhnLab-V3 2007.11.6.0 2007.11.05 -
AntiVir 7.6.0.30 2007.11.05 TR/Qhost.OT.2
Authentium 4.93.8 2007.11.03 -
Avast 4.7.1074.0 2007.11.05 -
AVG 7.5.0.503 2007.11.05 IRC/BackDoor.SdBot3.SWA
BitDefender 7.2 2007.11.05 Trojan.Loader.RBot.A
CAT-QuickHeal 9.00 2007.11.05 -
ClamAV 0.91.2 2007.11.05 Trojan.Qhost-37
DrWeb 4.44.0.09170 2007.11.05 -
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5264 2007.11.02 -
Ewido 4.0 2007.11.05 -
FileAdvisor 1 2007.11.05 -
Fortinet 3.11.0.0 2007.10.19 W32/Qhost.OT!tr
F-Prot 4.4.2.54 2007.11.05 -
F-Secure 6.70.13030.0 2007.11.05 Trojan.Win32.Qhost.ot
Ikarus T3.1.1.12 2007.11.05 Backdoor.Win32.Rbot.eab
Kaspersky 7.0.0.125 2007.11.05 Trojan.Win32.Qhost.ot
McAfee 5155 2007.11.02 -
Microsoft 1.2908 2007.11.05 VirTool:Win32/DelfInject.gen!S
NOD32v2 2637 2007.11.05 -
Norman 5.80.02 2007.11.05 -
Panda 9.0.0.4 2007.11.04 Trj/Spambot.C
Prevx1 V2 2007.11.05 -
Rising 20.17.01.00 2007.11.05 Trojan.Win32.QHost.nn
Sophos 4.23.0 2007.11.05 Mal/Behav-154
Sunbelt 2.2.907.0 2007.11.02 -
Symantec 10 2007.11.05 -
TheHacker 6.2.9.116 2007.11.05 -
VBA32 3.12.2.4 2007.11.05 Backdoor.Win32.Rbot.eab
VirusBuster 4.3.26:9 2007.11.05 -
Webwasher-Gateway 6.6.1 2007.11.05 Trojan.Qhost.OT.2
 
Additional information
File size: 140800 bytes
MD5: 72a5fb844082d8cf31c6a86c023cc591
SHA1: 202e8c9bffb05deda5325bc7939ccfcc9749b36f

Click to continue reading “Virus Found - Possible Threat “Trojan downloader””

Virus Found - Possible Threat “Trojan.Zlob” Undetected in many front line scanner

Once again I have stumbled upon a Possible threat (Trajan Downloader) which is not detected by big guns like Kaspersky / NOD32 (v2 and Beta v3) / Norton / BitDiffender.

File run.exe received on 10.29.2007 11:56:59 (CET)
Antivirus Version Last Update Result
AhnLab-V3 2007.10.27.0 2007.10.29 -
AntiVir 7.6.0.30 2007.10.29 TR/Dldr.Zlob.dwf
Authentium 4.93.8 2007.10.28 -
Avast 4.7.1074.0 2007.10.28 Win32:Zlob-AFG
AVG 7.5.0.503 2007.10.28 Downloader.Zlob
BitDefender 7.2 2007.10.29 -
CAT-QuickHeal 9.00 2007.10.26 TrojanDownloader.Zlob.gen
ClamAV 0.91.2 2007.10.29 Trojan.Dropper-2557
DrWeb 4.44.0.09170 2007.10.29 -
eSafe 7.0.15.0 2007.10.28 -
eTrust-Vet 31.2.5250 2007.10.29 -
Ewido 4.0 2007.10.28 -
FileAdvisor 1 2007.10.29 -
Fortinet 3.11.0.0 2007.10.19 -
F-Prot 4.3.2.48 2007.10.29 -
F-Secure 6.70.13030.0 2007.10.29 -
Ikarus T3.1.1.12 2007.10.29 -
Kaspersky 7.0.0.125 2007.10.29 -
McAfee 5150 2007.10.26 -
Microsoft 1.2908 2007.10.29 -
NOD32v2 2622 2007.10.28 -
Norman 5.80.02 2007.10.26 -
Panda 9.0.0.4 2007.10.28 -
Prevx1 V2 2007.10.29 -
Rising 19.47.02.00 2007.10.29 Trojan.DL.Win32.Zlob.def
Sophos 4.23.0 2007.10.29 Troj/Zlobar-Fam
Sunbelt 2.2.907.0 2007.10.27 -
Symantec 10 2007.10.29 -
TheHacker 6.2.9.110 2007.10.27 -
VBA32 3.12.2.4 2007.10.28 -
VirusBuster 4.3.26:9 2007.10.28 Trojan.DR.Zlob.Gen!Pac.32
Webwasher-Gateway 6.6.1 2007.10.29 Trojan.Dldr.Zlob.dwf
 
Additional information
File size: 102415 bytes
MD5: aa6f7f7a2c7ee6b0981b9c0430370458
SHA1: 720f1122e31665c445a8a32d3f4dee1513054e2d

Click to continue reading “Virus Found - Possible Threat “Trojan.Zlob” Undetected in many front line scanner”

Virus Found - Possible Threat “Backdoor.Win32.Bifrose.bcb”

As the title says !!! Its a trojanhorse or in simple words a spyware…

Recently I stumbled upon a file which seemed to be a malicious software where as few major AntiVirus and AntiSpyware softwares were unable to detect the threat !! Which included big names like Kaspersky, and NOD32 (ESET)…

Therefore I was quick to report the facts to the Detection center for those 2 BIG Houses !! I got in touch with Kaspersky LAB and EAST detection center to let them know about the new threat…

Click to continue reading “Virus Found - Possible Threat “Backdoor.Win32.Bifrose.bcb””

How to turn off / Disable Windows XP - Vista System Restore

Those we use windows, use Anti Virusn software too… Some time we install a Anti Virus when its too late means we already have a corruption of system… Now when we run the scan its really important that we should keep the Windows System restore option turned off….

How to turn off Windows System restore of Windows XP / Service Pack 1 / 1a / Service Pack 2 ??

Right Click on My computer

Right Click on My computer 

Click to continue reading “How to turn off / Disable Windows XP - Vista System Restore”

 

Advertisements