Malware and AntiVirus News

TrendLabs | Malware Blog – by Trend Micro

Threat News and Information Direct from the Experts

Protecting Customers From Black Hole Exploit Kit Spam Runs Thursday, 10 May 2012, 6:05 pm

In light of the slew of persistent black hole spam runs, we have been tracking and investigating this threat that leads users to the black hole exploit. These attacks typically start with a spammed message containing a link to a compromised website that redirects a user’s browser to a malicious site hosting the said exploit. [...]

Post from: TrendLabs | Malware Blog – by Trend Micro

Protecting Customers From Black Hole Exploit Kit Spam Runs

Source: TrendLabs | Malware Blog - by Trend Micro TrendLabs | Malware Blog – by Trend Micro | Sandra Cheng (Product Manager) and Jon Oliver (Senior Architecture Director)

Snapshot of Exploit Documents for April 2012 Thursday, 10 May 2012, 6:38 am

Targeted attacks that are part of APT campaigns commonly use exploit documents in their social engineering ploy. These exploit documents serve as unassuming carriers of the attacker’s payload malware into the target’s computer. Since exploit documents are one of the first arrival vectors of APT malware, a little knowledge of the most exploited software and [...]

Post from: TrendLabs | Malware Blog – by Trend Micro

Snapshot of Exploit Documents for April 2012

Source: TrendLabs | Malware Blog - by Trend Micro TrendLabs | Malware Blog – by Trend Micro | Ryan Flores (Senior Threat Researcher)

Police Trojan Crosses the Atlantic, Now Targets USA and Canada Wednesday, 9 May 2012, 10:26 am

The Police Trojan has been targeting European users for about a year. It should come as no surprise that the latest incarnations of this obnoxious malware have started targeting the United States and Canada. In the latest batch of C&C servers we have analyzed, not only has the list of countries increased but also their [...]

Post from: TrendLabs | Malware Blog – by Trend Micro

Police Trojan Crosses the Atlantic, Now Targets USA and Canada

Source: TrendLabs | Malware Blog - by Trend Micro TrendLabs | Malware Blog – by Trend Micro | David Sancho (Senior Threat Researcher)

Microsoft Releases an Update Covering DUQU; Oracle and Adobe Vulnerabilities Patched, Too Wednesday, 9 May 2012, 3:21 am

While seven bulletins from Microsoft is generally a “light” release, bulletin MS12-034 surprisingly addresses a number of vulnerabilities found in the Windows operating system, MS Office, Silverlight, and .NET Framework. Of note, Microsoft mentions that this particular bulletin supersedes MS11-087, the bulletin meant to address the Win32k TrueType Font (TTF) vulnerability that was used by [...]

Post from: TrendLabs | Malware Blog – by Trend Micro

Microsoft Releases an Update Covering DUQU; Oracle and Adobe Vulnerabilities Patched, Too

Source: TrendLabs | Malware Blog - by Trend Micro TrendLabs | Malware Blog – by Trend Micro | Dianne Lagrimas (Technical Communications)

Recent Threats Highlight Vulnerabilities CVE-2012-0779 and CVE-2012-0507 Tuesday, 8 May 2012, 4:51 pm

Targeted Attack Uses Recent Adobe Flash Player Vulnerability (CVE-2012-0779) Reports of a targeted attack surfaced recently. One such attack arrives as an email message that trick users into executing a malicious attachment. The malicious attachment, as expected, is a file that exploits CVE-2012-0779, found in several versions of Adobe Flash Player. Exploitation results to a [...]

Post from: TrendLabs | Malware Blog – by Trend Micro

Recent Threats Highlight Vulnerabilities CVE-2012-0779 and CVE-2012-0507

Source: TrendLabs | Malware Blog - by Trend Micro TrendLabs | Malware Blog – by Trend Micro | Roland Dela Paz (Threat Response Engineer)

[INFOGRAPHIC] Getting Extra Mileage from Your Smartphone Monday, 7 May 2012, 8:09 pm

When it comes to traveling, conventional wisdom dictates to pack light. While this usually refers to clothing, the same rule could very well be applied to devices. Lugging around numerous and bulky devices can effectively slow down any traveler. Enter the smartphone. Smartphones have become indispensable to the user on-the-go, offering mobility without sacrificing functionality. [...]

Post from: TrendLabs | Malware Blog – by Trend Micro

[INFOGRAPHIC] Getting Extra Mileage from Your Smartphone

Source: TrendLabs | Malware Blog - by Trend Micro TrendLabs | Malware Blog – by Trend Micro | Abigail Pichel (Technical Communications)

17 Bad Mobile Apps Still Up, 700,000+ Downloads So Far Thursday, 3 May 2012, 9:53 pm

We’ve reported previously that malicious apps were discovered in the official Android app store, which is now known as Google Play. While those reported apps were removed, more malicious apps have been seen in the official marketplace and appear to be still victimizing users. This is just one of the important reasons why we feel [...]

Post from: TrendLabs | Malware Blog – by Trend Micro

17 Bad Mobile Apps Still Up, 700,000+ Downloads So Far

Source: TrendLabs | Malware Blog - by Trend Micro TrendLabs | Malware Blog – by Trend Micro | Bob Pan (Mobile Security Engineer)

Persistent Black Hole Spam Runs Underway Monday, 30 April 2012, 4:06 pm

Over the past month we’ve been investigating several high-volume spam runs that sent users to websites compromised with the Black Hole exploit kit. Some of the spam runs that were part of this investigation used the name of Facebook, and US Airways. Other spam runs involved LinkedIn, as well as USPS. The most recent campaign [...]

Post from: TrendLabs | Malware Blog – by Trend Micro

Persistent Black Hole Spam Runs Underway

Source: TrendLabs | Malware Blog - by Trend Micro TrendLabs | Malware Blog – by Trend Micro | Jon Oliver (Software Architecture Director)

A Closer Look at ANDROIDOS_TIGERBOT.EVL Monday, 30 April 2012, 8:54 am

Mobile security researchers reported the emergence of an Android malware called Tigerbot. The said malware is actually an app called Spyera, which we detect as ANDROIDOS_TIGERBOT.EVL. The said app was found in third party Chinese app stores. We tried to analyze this app to check if it is indeed malicious. Below are our findings: Installation [...]

Post from: TrendLabs | Malware Blog – by Trend Micro

A Closer Look at ANDROIDOS_TIGERBOT.EVL

Source: TrendLabs | Malware Blog - by Trend Micro TrendLabs | Malware Blog – by Trend Micro | Bob Pan (Mobile Security Engineer)

Trend Micro Partners with Facebook: What It Means for Users Friday, 27 April 2012, 12:50 am

Today, Trend Micro is proud to announce that we are taking part in Facebook’s new security initiative to help protect its more than 900 million users against the wide variety of threats that target users of the world’s most popular social network. As part of this initiative: Facebook and Trend Micro will work together to [...]

Post from: TrendLabs | Malware Blog – by Trend Micro

Trend Micro Partners with Facebook: What It Means for Users

Source: TrendLabs | Malware Blog - by Trend Micro TrendLabs | Malware Blog – by Trend Micro | Trend Micro