By Andrew Brandt
Over the past week, someone has been spamming the file sharing site ThePirateBay.org with comments advertising a new “product” called BittorrentBooster. According to the site’s administrators, the spammer used a large number of fraudulently registered accounts to post the messages as feedback, attached to hundreds, possibly thousands, of downloadable .torrent files, which file-sharers [...]
By Andrew Brandt
After more than a week of harassment by goofballs spamming links, Facebook users can breathe a sigh of relief that, for now, at least one source of trouble has been eradicated.
Last week’s worm-like spread of links to the mygener.im domain, and this week’s use of the ponbon.im and hunro.im domains to phish Facebook [...]
By Andrew Brandt
This week’s installment of what’s-old-is-new-again in the world of malware comes from one of the many groups making and distributing phishing Trojans in China. Earlier this year, someone discovered a hacktool called ZXArps, and began distributing it in earnest as a payload from another malicious downloader.
Unlike most malware we see these days, ZXArps (which [...]
By Andrew Brandt
Once in a while, you don’t have to do anything at all and malware just drops into your lap. That happened to me the other day, when I received a buddy request from a total stranger in my decade-old ICQ instant messenger account. It’s never failed to be a rich source for malicious links, SPIM, and [...]
By Andrew Brandt
We’ve just tallied the top 10 threats Webroot’s consumer products detected during the month of April, and some interesting trends appear to be shaping up.
Conficker aside, the first quarter of 2009 seemed to be dominated by worms that spread not only over a network, but to virtually anything you can plug into a USB port to store [...]
By Andrew Brandt
|
Posted in Threat Research, adware
| Tags: adodb.stream, alman, autorun, gdiplus.dll, MS04-028, PDF exploit, psyme, trojan, trojan-tracur, virtumonde, Virut, wazner, worm, worm-mabezat, worm-maybenot |
By Andrew Brandt
The team here at Webroot has picked up on a Trojan that appears to target a relatively new social networking site: MyYearbook.com.
The site caters to the high-school-age crowd with activities that include various kinds of person-to-person challenges, streaming TV, and a kind of virtual matchmaker service for the tween-and-above set. We’re calling the malware that [...]
By Andrew Brandt
|
Posted in Stupid malware tricks, Threat Research
| Tags: botnet, drive-by downloads, Gmail, Jolleee, Myblot, MyYearbook, ReCaptcha, spam relayer, trojan horse, Webroot blog |