Spyware, Viruses, & Security forum

General discussion

VIRUS \ Spyware ALERTS - November 4, 2008

Discussion is locked
You are posting a reply to: VIRUS \ Spyware ALERTS - November 4, 2008
The posting of advertisements, profanity, or personal attacks is prohibited. Please refer to our CNET Forums policies for details. All submitted content is subject to our Terms of Use.
Track this discussion and email me when there are updates

If you're asking for technical help, please be sure to include all your system info, including operating system, model number, and any other specifics related to the problem. Also please exercise your best judgment when posting in the forums--revealing personal information such as your e-mail address, telephone number, and address is not recommended.

You are reporting the following post: VIRUS \ Spyware ALERTS - November 4, 2008
This post has been flagged and will be reviewed by our staff. Thank you for helping us maintain CNET's great community.
Sorry, there was a problem flagging this post. Please try again now or at a later time.
If you believe this post is offensive or violates the CNET Forums' Usage policies, you can report it below (this will not automatically remove the post). Once reported, our moderators will be notified and the post will be reviewed.
Collapse -
Troj/Agent-ICZ

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Spy-BI

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/FakeAV-FY

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Dloadr-BXZ

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Agent-IDA

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Kerbot-A

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/FakeAle-JL

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Dorf-BW

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Dloadr-BYB

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Dload-EF

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Dload-BYA

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/BadCab-A

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Abusing Magic for fun and profit

In reply to: Troj/BadCab-A

4 November 2008

So called ?Magic? numbers evolved from the UNIX operating system and now play a regular role in (amongst others) identifying particular file types. The doctoring of these magic numbers may render files unrecognisable by the operating system or applications expecting to work with them - and malware authors have long ago attempted to leverage this.

Malware authors are again rediscovering the usefulness of magic mangling and exploiting the fact that anti-virus engines also recognise files using magic - allowing them to hide certain content by preventing the correct parsing of tainted objects.

A recent example of this is the Troj/BadCab-A Trojan which to the casual observer might appear to be a legitimate Microsoft CAB file SFX?er - yet the CAB object appears to be missing from its regular location in the resource section?

More: http://www.sophos.com/security/blog/2008/11/1919.html

Collapse -
Troj/AntiAV-D

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Agent-IDD

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Agent-IDC

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Sus/ObfJS-BL

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Trojan.Farfli!SP

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
W32/Small-EMR

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/PWS-AVP

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/OnlineG-BM

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Mal/Sality-A

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Mal/Sality-B

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Prosti-DK

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Hupig-D Trojan - McCain pulls ahead in pharmaceutical spam

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Taking the political temperature through the medium of *****-enlargement promises

By John Leyden ? Get more from this author

Posted in Spam, 4th November 2008

Barack Obama is ahead not only in the polls but where it counts the most - in spam messages. However, his presidential rival John McCain can claim his own guaranteed enlarged small victory.

The Democrat candidate is the topic of 70 per cent more junk mail messages than his Republican counterpart overall. But McCain edges ahead by a ratio of five to four in one important category - pharmacy spam, according to stats from Secure Computing.

So based on the volume of *****-enlargement pill promises the senior senator from Arizona is well ahead of the Illinois whippersnapper.

More: http://www.theregister.co.uk/2008/11/04/us_election_spam_results/

Collapse -
Troj/Gimmiv-Gen

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Aliases TrojanSpy:Win32/Gimmiv.A
TrojanSpy:Win32/Gimmiv.A.dll

Category Viruses and Spyware

Type Trojan

Troj/Gimmiv-Gen is a family of Trojans for the Windows platform.

When members of Troj/Gimmiv-Gen are run, the following file is usually dropped:

<System>\wbem\sysmgr.dll

Members of Troj/Gimmiv-Gen typically set the following registry entries to link the dll with svchost.exe:

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost
sysmgr
sysmgr

HKLM\SYSTEM\CurrentControlSet\Services\sysmgr\Parameters
ServiceDll
<System>\wbem\sysmgr.dll

HKLM\SYSTEM\CurrentControlSet\Services\sysmgr\Parameters
ServiceMain
ServiceMainFunc

More: http://www.sophos.com/security/analyses/viruses-and-spyware/trojgimmivgen.html?_log_from=rss

Collapse -
Exp/MS08067-A

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Dloadr-BYD

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Zlob-AQJ

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Collapse -
Troj/Zlob-AQI

In reply to: VIRUS \ Spyware ALERTS - November 4, 2008

Popular Forums

icon
Computer Newbies 10,686 discussions
icon
Computer Help 54,365 discussions
icon
Laptops 21,181 discussions
icon
Networking & Wireless 16,313 discussions
icon
Phones 17,137 discussions
icon
Security 31,287 discussions
icon
TVs & Home Theaters 22,101 discussions
icon
Windows 7 8,164 discussions
icon
Windows 10 2,657 discussions

DEALS, DEALS, DEALS!

Best Black Friday Deals

CNET editors are busy culling the list and highlighting what we think are the best deals out there this holiday season.