Results 1 to 3 of 3

Thread: Virus and trojan alerts

Hybrid View

Previous Post Previous Post   Next Post Next Post
  1. #1
    Join Date
    Jan 2005
    Location
    Sundsvall, Sweden
    Posts
    3,532

    Virus and trojan alerts

    "Silence is the virtue of fools"
    Francis Bacon (1561-1626), British philosopher
    (On April 9, 1626, Francis Bacon died)

    - Panda Software's Weekly Report on Viruses and Intruders -
    ** Oxygen3 24h-365d, by Panda Software (http://www.pandasoftware.com)

    Madrid, April 9, 2006 - This week's report from Panda Software about viruses and intruders is a reflection of the current trend of criminalization of malware. The creators of malicious code, bored perhaps with the futility of their craft, have opted to concentrate their efforts on digital theft.

    The first example, the Banbra.BZY Trojan, searches Internet Explorer screens for certain texts, to see if the user is accessing certain online banking services. If they are, users will see a web page identical to the one they were trying to access and which asks them to enter their data. In this way, the creator of the malicious code can obtain the information needed to access the bank account as if they were the legitimate account holder.

    Banbra.BZY does not spread automatically under its own steam, in the way that worms or traditional viruses do, but needs to be installed deliberately on the system. This technique can be highly dangerous, as it is possible for a criminal to take advantage of a user (or company) using this code, thereby clearly entering the category of targeted attack. Panda Software has created an animation to highlight the dangers of this type of attack and which is available at: http://www.pandasoftware.es/descarga...ntacionataques.

    The next example of malware we are looking at in this week's Panda Software report is Mytob.NP. This worm, once installed on a computer, connects to another system to receive commands through which an attacker could take complete control of the compromised computer. To avoid detection, Mytob.NP terminates certain security processes, including those belonging to antivirus and firewall applications.

    Mytob.NP reaches computers in a message that appears to come from the security department of the domain of the mail account of the target user. This false message tries to get users to go to a website, apparently inoffensive, that really points to web page from which the malicious code will be downloaded.

    Finally, this week's report looks at data provided by PandaLabs on KurtAgent.A, a password-stealer Trojan. This Trojan logs users' keystrokes and can therefore record passwords entered. It also obtains other type of information, such as the addresses of websites visited, email accounts, etc.

    KurtAgent.A also uses other malicious code to obtain information, all of which are detected by Panda Software solutions. KurtAgent.A needs to be spread by an attacker as it cannot spread itself automatically.

    For further information about these and other computer threats, visit Panda Software's Encyclopedia

    Lagu :shock:
    Once an AMDuser always an AMD user

  2. #2
    Join Date
    Jan 2005
    Location
    Sundsvall, Sweden
    Posts
    3,532
    Hi

    How the hell will we know if we have loaded a false homepage similar to an authentically one?

    I have set AMDusers and my Banks web-addresses in “reliable places” in Internet Explorers preferences using prefix https:// and have both as my favourite websites.

    But I don’t know if this is cecure.

    Lagu
    Once an AMDuser always an AMD user

  3. #3
    Join Date
    Nov 2005
    Location
    UK
    Posts
    991
    Quote Originally Posted by Lagu

    I have set AMDusers and my Banks web-addresses in “reliable places” in Internet Explorers preferences
    There's one of your problems...

    your not using Firefox or a different safe broswer! :P Netscape is quite good. I like there reliable site's info... Can download new sites that cqan tell you what sites are reliable and which aren't. You can also set priorities for good and bad sites. :D

    And you can change the rendering engine that if a site doesn't work well with the mozilla/netscape code, it can use IE

    In fact...why the hell aren't I using it? :? :roll:

    Doh thats right..I use firefox because it can be used Portable (search for portable firefox...) means no registry info and tis quicker to load. And better for when I reformat because all the settings are with it :D

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •