Archive for the 'Virus Alerts' Category

The Danger of Being ‘Friends’

Koobface Infection Trend

Kaspersky Lab Discovers Koobface Worm Doubles its Number of Command and Control Servers in 48 Hours

Kuala Lumpur, March 12, 2010 – It’s not easy being ‘friends’ and now it is getting downright dangerous as the Koobface worm returns with a vengeance infecting social networking sites such as Facebook and Twitter, according to Kaspersky Lab, a leading developer of secure content management solutions.

The malicious Koobface program(an anagram of Facebook) targets sites such as Facebook and Twitter and uses compromised legitimate websites as proxies for its main command and control server, attempting to gather sensitive information from the victims such as credit card numbers. It was first detected in December 2008 and a more potent version appeared in March 2009 and it is unfortunately back again in 2010.


Continue reading ‘The Danger of Being ‘Friends’’

The Sims 3757, 4655 auto-tagging in Facebook.com

It seems that starting yesterday many Facebook.com users are facing similar trends “Your friend tagged you in a photo”. But upon opening the photo, it is a photo of a popular game Sims 2. Some of the photos are titled “The Sims 3757″ and “The Sims 4655″. What seems to be the problem is that 150 over people were tagged in the same photo and the photo owner was not the person who uploaded the photo.

How did it get uploaded in the first place? Could it be some rogue application the user has allowed access into their profile? Some users even reported that their Facebook Wall was bombarded with hundreds of announcement. The photo also comes with a suspicious link (hxxp:\tryntry.com) that we suggest you not to visit as to not compromise your Facebook account details.

For the time being, please delete the photo from your album until we hear further news from Facebook.com.

Downadup worm, 1.9mil PCs, worldwide infection!

It wasn’t such a big issue last December but Downadup has taken over about 1.9 million unpatch Windows-based computers  to date as reported on F-Secure Blog. Downadup or some vendors might call it Conficker or Kido exploits the PC through the MS08-067 vulnerability.

Continue reading ‘Downadup worm, 1.9mil PCs, worldwide infection!’

Kraken the Botnet - recruited 400,000 systems

Kraken the Botnet

Damballa Inc. an internet security company based in Georgia - specialized in BotArmies recently discovered a worldwide mega infection of botnets and had given it a name “Kraken“. Botnets are large networks of computers being command and controlled like a zombie. The name was probably derived from which Kraken(a legendary sea monster) is seen infecting more than 400,000 computers more than the current Storm Worm of 200,000 computers.

Continue reading ‘Kraken the Botnet - recruited 400,000 systems’

Storm Worm targets April Fool Day

Storm Worm target April Fool Day

Thanks to Abhor Network and Sunbelt for for alerting us about the new Storm activity. The picture of a Joker holding out an April Fool message is trying to lure users into downloading a Storm worm. The link to the Storm website arrives in your mailbox with all sorts of April Fool’s subject headers. Once at the malicious website, it will try to download either a file with name foolsday.exe, funny.exe or kickme.exe. As of now, majority of anti-virus software may not have the signature for this variant - take necessary precaution.

Continue reading ‘Storm Worm targets April Fool Day’