Secure List feed for B2B

Syndicate content Securelist / All Updates
Updated: 17 hours 8 min ago

Descriptions: Trojan.Win32.KillAV.gcg

Thu, 01/31/2013 - 08:52
The malicious library exports the "testall" function which leads to the following actions being carried out. If the system launches the "avp.exe" process, the trojan tries to download the following...

Blog: Malicious Chrome extensions: a cat and mouse game

Wed, 01/30/2013 - 21:06

Google Chrome users are being targeted in these days by a wave of attacks that uses malicious extensions hosted in the official Chrome Web Store

Descriptions: Trojan.Win32.Agent2.dmdi

Wed, 01/30/2013 - 10:59
The malicious library is a component of a trojan program designed to steal the user's authentication data. It is a Windows dynamic-link library (PE-DLL file). 8192 bytes. Written in C++.

Descriptions: Trojan-Downloader.JS.Agent.gbj

Wed, 01/30/2013 - 10:42
A trojan program that uses the vulnerabilities in Oracle Java and Adobe Reader/Acrobat products to download and launch other malware. It is a HTML document containing Java Script. 88200 bytes.

Descriptions: Trojan-Downloader.JS.Agent.gaf

Wed, 01/30/2013 - 10:24
A trojan program that uses the vulnerabilities in Oracle Java and Adobe Reader/Acrobat products to download and launch other malware. It is a HTML document containing Java Script. 88518 bytes.

Blog: God horses are floating clouds: The story of a Chinese banker Trojan

Wed, 01/30/2013 - 04:47
Many Chinese cyber-criminals changed their business from stealing QQ numbers or virtual assets in online games to stealing money during the online trading.

Descriptions: Trojan.Win32.Jorik.Carberp.ar

Tue, 01/29/2013 - 06:28
A trojan that provides the attacker with remote access to the infected computer. It is a Windows application (PE-EXE file). 176640 bytes. UPX packed. Unpacked size - around 245 kB. Written in...

Descriptions: Trojan.Win32.Agent2.dmvt

Tue, 01/29/2013 - 06:20
After launching, the trojan checks for the following branch in the system registry: [HKCU\Software\Classes\CLSID\{82404416-4C60-47F8-BA06-90BA7261C3AE}\InprocServer32] If the branch is missing, it...

Descriptions: Trojan.Win32.KillFiles.afz

Tue, 01/29/2013 - 06:15
A trojan program designed to delete components of the security software Gbuster plugin for Internet Explorer. Implemented in the form of an NT kernel mode driver. 5632 bytes. Written in C++.