May spyware list
This month there have been changes in the first two positions. Adware/Lop occupies the first position and 47 detections below, the seconds position is occupied…
The Cimuz uninstaller
Checking a server that installs a variant of Trj/Cimuz, I came across a link that pointed to remover.exe file: After analyzing the code of the…
Mal(ware)formation statistics
While catching up on an old but excellent post by jason geffner on reconstructing import tables I remembered that I've been wanting to study the…
Pirates of the Caribbean: At World's End
No, it’s not about the Disney’s movie that you can see today at cinemas. There has been a massive sending of a message with a file…
How TruPrevent Works (I)
I recently came across an interesting document by Gartner's analyst Neil MacDonald, called Host-Based Intrusion Prevention Systems (HIPS) Update: Why Antivirus and Personal Firewall Technologies…
Malware-friendly countries
Recently there have been some studies regarding Internet hosting providers which are often used maliciously to distribute malware. As this is an interesting subject we've…
A new server hosting a Briz
VisualBreeze or VisualBriz is another malware that is usually sold in forums of malware developers, similar to the ones we mentioned in “Cybercime for sale”.…