|
Malware Blog |
|
TrendLabs | Malware Blog - by Trend Micro
|
TrendLabs Malware Blog - Hottest news about worms, viruses, trojans, adware and other internet threats by Trend Micro.
|
-
Photobucket Gets Phished
Photobucket is, by far, one of the largest photo-sharing sites in the world.
It is generally used for personal photographic albums, remote storage of avatars displayed on Internet forums, and storage of videos.
Lots of people may like to keep their albums private, allowing password-protected guest access, or open them up to the public. And now this [...]
-
Picture-Perfect Phishing
Oi Fotos, a photo storage Web site in Brazil, has been victimized recently by a phishing-spyware combo.
Figure 1: Screenshot of the legitimate Oi Fotos Web site
The bad guys have taken advantage of the mobile service of Oi Fotos. The phishing email contains a notification that the recipient has received photos from a cellular account and [...]
-
Spammers Masquerade as Internet ?Copyright Police?
Trend Micro Advanced Threats Researchers Ivan Macalintal and Paul Ferguson report that Internet spammers have turned to file-sharing scare-tactics. This is to entice would-be victims to open a malicious attachment, threatening the unfortunate recipients with interrupted Internet connectivity or legal action.
Here are are screenshots of two of the sample email messages:
Figure 1. A certain “ISP [...]
-
A Million Search Strings to Get Infected
Seems like the bad guys pushing fake antivirus software are not done yet.
We received several reports from the North American region earlier today about users being victimized by a rogue antispyware software. Users download this rogue program after they have somehow been convinced to click on malicious links. These links point to malware that caused [...]
-
July Malware Roundup
Notable Malware
WORM_NUWAR.VQ, TROJ_DROPPER.OAC
These malware took advantage of the Fourth of July celebrations in the United States to increase their chances of distribution. A malicious URL was included in eCards that were spammed during this time. The URL pointed to locations from where these malware could be downloaded.
TROJ_PIDIEF.JT
Sometime in mid-July, an email was being spammed, foretelling [...]
-
Fake Antivirus Trojans Ramping Up
Our researchers at TrendLabs have discovered a new set of rogue antivirus software circulating in the wild. Based on initial analysis, these threats arrive mainly via spammed email messages that contain a link to a bogus celebrity video scandal. We have also received reports that the said link is circulating in instant messaging applications and [...]
-
Spam with an Identity Crisis
Just when you think you’ve seen everything, malware criminals manage to come up with something that hasn’t been seen before.
Trend Micro Advanced Threats Analyst Joey Costoya reports this latest find:
Figure 1. Spammed email boasting breaking news.
If you were to click on any links here, however, you’d be quite surprised - because instead of ending up [...]
-
Phishers Cast a Seamless Attack on MobileMe
Clever. Hardly detectable. Very timely.
Such terms were not used to glorify phishers, but to demystify the (old) way we see phishing and to help us begin acknowledging where phishing schemes are inevitably going.
Peter Cohen of MacWorld reports a new phishing scam targeting users of MobileMe, Apple’s latest subscription-based Internet suite that replaces the .Mac (pronounced [...]
-
Microsoft?s August Patch Tuesday Roundup
For the month of August, Microsoft has released eleven (11) security bulletins: six (6) which are tagged as Critical and five (5) which are tagged as Important.
Here’s the latest set:
Risk Rating: Critical
Microsoft Security Bulletin MS08-041
Vulnerability in the ActiveX Control for the Snapshot Viewer for Microsoft Access Could Allow Remote Code Execution (955617)
Microsoft Security Bulletin MS08-043
Vulnerabilities [...]
-
Bogus MSN Spam Features Malicious Software
Spam claiming to be from Microsoft and offering download links to Internet Explorer 7.0 and Windows Malicious Software Removal Tool appear in the wild, the Trend Micro Content Security Team has reported.
Here are screenshots of sample emails:
To buy themselves some credibility, spammers added what seems to be a disclaimer from MSN Featured Offers, which is [...]
-
IM: Instant Malware
Instant messaging (IM) applications are popular infection vectors — malware authors are known to use instant messaging platforms to spread malware by sending either malicious files or URLs.
Trend Micro researchers have recently witnessed spammed email messages that use the popular IM application Yahoo! Messenger in propagating malware, but in a very different way than previously [...]
-
Scammers Try Their Luck (Again) on The Olympics
You may not like scammers, but you have to give them one thing: they’re a determined lot.
Of course, they would keep trying again and again. Look at this phishing email that Trend Micro Advanced Threats Analyst Joey Costoya found recently:
If this looks just a bit familiar, well, it should. It’s the usual 419 Scam, just [...]
-
More Fake News, More Malicious CNN Spam
Showing no signs of slowing down, the spammers who were sending the CNN-themed emails have changed the look of their messages to this:
The Full Story link, says TrendLabs’ Joey Costoya, directs users to one of those cnnplus.html URLs. Again it asks users to download and install an ActiveX Object. As seen in the previous attack, [...]
-
New Trojan Bait: CNN Videos
A lot of people trust CNN when it comes to news, but that’s the real CNN. This one looks believably like it’s from CNN, but it’s not:
Figure 1. Sample of the spammed email message
It’s a malicious spammed email message using the popular broadcast network in its social engineering technique. CNN has always been one of [...]
-
ZLOB Enters The Search Engine Market
More than a year ago, Trend Micro threat researchers uncovered a network of over 900 rogue DNS (Domain Name System) servers related to the ZLOB Trojan family. We gave examples showing that these rogue DNS servers are part of click fraud and leakage of personal information.
Just recently, however, we discovered that this network is [...]
|
|