Articles Archive for 23 June 2009

All feedback is good feedback
Posted in Information and Removal on 23 June 2009

In our recently published white paper on Pushdo we noted that the malware used a certain string as part of its encryption routine.

Poshel-ka ti na hui drug aver

This string roughly translates to “Screw you my friend Aver” (well its actually a lot less polite than that, but you get the idea). We theorized that the [...]

Post from: TrendLabs | Malware Blog - by Trend Micro

All feedback is good feedback

Another Messy Mass Compromise Emerges
Posted in Information and Removal on 23 June 2009

The hype after recent mass compromises has not even died down yet, and already another massive attack has been launched. Trend Micro was alerted of the emergence of another mass compromise, dubbed Nine Ball, for the same reason Gumblar was named Gumblar, only that this time, the Nine Ball domain is only one of hundreds [...]

Post from: TrendLabs | Malware Blog - by Trend Micro

Another Messy Mass Compromise Emerges

Terminator 2009
Posted in Information and Removal on 23 June 2009

Terminator 2009 might sound like a powerful means of combating spyware and viruses, but in reality it is no more than a simple scam. This parasite enters the system by using the Zlob trojan, which has a central role in pretty much every rogue anti-spyware scam. Terminator 2009 uses misleading advetising to trick users into purchasing [...]