July 2007 - Posts

Ice(Pack) for the summer

Posted by Luis Corrons at  26 July 07 02:01     It's summer, about 29ºC - 84ºF in Bilbao, a sunny and beautiful day. Good time for an ice-cream. But today we'll change the menu and we'll have an IcePack instead. IcePack Platinum is the name of a new "Kit for installing malware through exploits". Regarding

Read More...


XRumer

Posted by Vicente Martinez at  24 July 07 08:26     As we commented in Spam in PHP forums and in Spam in PHP forums (II) , it has become more and more usual to see websites (forums, blogs, wikis, guestbooks, etc...) that contain advertising comments or links that direct to sites that infect with malware.

Read More...


More about Mpack (II)

Posted by Vicente Martinez at  20 July 07 08:35     Today I have come across a server hosting an Mpack that has 292 different websites with iframes that make reference to it. Most of the infected users are Italian, as in the case we explained a month ago. You can check the information by following this

Read More...


PINCH, THE TROJAN CREATOR

Posted by Luis Corrons at  18 July 07 10:41     Some time ago, we talked to you about malware prices, HTTP botnets, etc. Today I will show you the level Trojan creators have reached and the way in which some of them launch their creation ‘builders’, authentic centers for designing and creating totally

Read More...


A new case of RansomWare !!!

Posted by Vicente Martinez at  17 July 07 08:45     We have detected a new case of RansomWare. Once the malware infects users and encrypts their files, several “read_me.txt” files are created in the infected system, which warn users that their data files have been encrypted and that they won’t be able

Read More...


Spammers: PDF rules!

Posted by Luis Corrons at  11 July 07 02:18     A few weeks ago a spam attack was launched – as it happens everyday. But that time there was something new. It was a pump and dump stock scam, using a PDF attachment. And what’s more, the PDF looked in a very professional way, so many people could be

Read More...


Guidded shopping

Posted by pmontoya at  10 July 07 09:58     Last week we have heard about an online shop that sells Iphones. This matter wouldn’t be unusual except for the fact that it is the classic case of phishing. Basically, you access the web thinking you are buying in an Apple’s official shop but, in fact,

Read More...


June spyware list

Posted by Vicente Martinez at  04 July 07 02:06     This month, Application/MyWebSearch joins the list in the first position, with only 36 detections less than Adware/Lop, which goes down to the second position. 1.- Application/MyWebSearch 2.- Adware/Lop 3.- Adware/Gator 4.- Dialer.XD 5.- Spyware/Virtumonde

Read More...