Mal(ware)formation statistics
While catching up on an old but excellent post by jason geffner on reconstructing import tables I remembered that I've been wanting to study the…
Pirates of the Caribbean: At World's End
No, it’s not about the Disney’s movie that you can see today at cinemas. There has been a massive sending of a message with a file…
How TruPrevent Works (I)
I recently came across an interesting document by Gartner's analyst Neil MacDonald, called Host-Based Intrusion Prevention Systems (HIPS) Update: Why Antivirus and Personal Firewall Technologies…
Malware-friendly countries
Recently there have been some studies regarding Internet hosting providers which are often used maliciously to distribute malware. As this is an interesting subject we've…
A new server hosting a Briz
VisualBreeze or VisualBriz is another malware that is usually sold in forums of malware developers, similar to the ones we mentioned in “Cybercime for sale”.…
W32/MsnPhoto.A.worm
We have found a new malware that uses instant messaging to deceive users. It arrives as an .exe file disguised as a .jpg. If you open it, you will…
Zunker that installs another Bot
One of the active servers of the Zunker we mentioned yesterday installs another bot. Although the first Zunker we talked about was configured to only…