Twitter is becoming a common medium to spread spam, malware and all kinds of badness. Just a few weeks ago, we wrote about FIFA and the Gaza attacks being used as social engineering leverage by Trojan creators , and there are no signs of them stopping any time soon.
Original post:
Backdoors in Twitter, Now in Arabic
Posted by (0) Comment
Zynga’s FarmVille is a popular social networking game and perhaps it should come as little surprise that many players want to learn FarmVille secrets and cheats.
TrendLabs SM recently handled a client case last March wherein two peculiar malware leveraged a Windows service— Windows Management Instrumentation (WMI) —to execute their malicious routines. WMI lets users access and retrieve information about their OSs. It is particularly useful for administrators, especially in enterprise environments, as it manages applications found on systems connected to a network using any one of various coding languages
Excerpt from:
Windows WMI Abused for Malware Operations
Posted by (0) Comment
A recent blog from our colleagues at Sunbelt highlighted a new Trojan botnet creator tool called ‘TwitterNet Builder’.
Posted by (0) Comment
Zeus/Zbot is one of the most widely known Internet threats today. It’s been around since 2007 and has evolved over time, and is still in a constant state of being developed into a stronger, more prolific Trojan.
.PDF files —or its inherent features—have been used by cybercriminals in some of the most noteworthy attacks we have encountered.
The KOOBFACE FTP grabber component, which is a variant of the LDPINCH Trojan family, usually drops stolen FTP user names and passwords to a remote server controlled by the KOOBFACE gang.
Visit link:
KOOBFACE IP Taken Down, Gang Transfers Hosting to China
News of a new botnet has been circulating recently in the threat landscape. According to reports, several systems have been infected by TROJ_DLOADE.ATJ , which has been built to download and install other malware.
See the original post here:
Emerging P2P Trojan Botnet Uncovered
Posted by (0) Comment
There’s a new ransom trojan in circulation. This one attempts to steal victims’ money by bullying them to pay a “pre-trial settlement” to cover a “Copyright holder fine”
Read the original here:
ICPP Copyright Foundation is Fake
We recently received a file (from CERT) for analysis. We found that the file was a Trojan that opens a back door on a compromised computer and listens for commands on port 7777. This by itself is not very unusual, but what surprised us was that this file was being distributed by Energizer Inc as part of a USB charger-monitoring software package.
See the original post here:
Back Door Found in Energizer DUO USB Battery Charger Software