myITforum.com Community Forum myITforum.com Community Forum

Home  Forums  Blogs  Live Support chat  Search Articles  Wiki  FAQ  Email Lists  Register  Login  My Profile  Inbox  Address Book  My Subscription  My Forums 

Photo Gallery  Member List  Search  Calendars  FAQ  Ticket List  Log Out

All Forums RSS Feed Subscription:


  


AntiVirus 2009 - Fake BSODs and Reboots continue in new variants

 
View related threads: (in this forum | in all forums)

Logged in as: Guest
  Printable Version
All Forums >> [Security, AntiVirus, and Patching] >> Breaking Virus & Security News >> AntiVirus 2009 - Fake BSODs and Reboots continue in new variants Page: [1]
Login
Message << Older Topic   Newer Topic >>
AntiVirus 2009 - Fake BSODs and Reboots continue in new... - 10/3/2008 10:52:11 AM   
hwaldron


Posts: 3586
Score: 264
Joined: 9/12/2002
From: Roanoke VA, USA
Status: offline
Trend Micro is continuing to see more variants of Antivirus 2009 in the wild using these tactics to frighten users (i.e., new term of "scareware" was been introduced). Unfortunately, inexperienced users may feel it's their true AV system that's creating these messages. They may become infected by following "the yellow brick road" of prompts that eventually load these malicious agents.

Keeping AV protection updated is important. However, the malware agent is constantly changing with new variant to avoid AV detection (e.g., Packing algorithms, MD5 hash total changes, HTML changes, etc).

Please be careful with all email and websites.

AntiVirus 2009 - BSODs and Fake Reboot continue in new variants
http://blog.trendmicro.com/rogue-av-tactics-continue-to-threaten/

quote:

October has just begun and Trend Micro threat researchers keep seeing more and more — slightly different, but yet increasingly more annoying — variations to the set of rogue AV infection signals we have been documenting on this blog.

This variant is an ongoing iteration of the Antivirus 2009 campaign and is detected as TROJ_FAKEAV.SV. It is nice to see Microsoft and the State of Washington going after scareware purveyors. We completely support efforts to bring these criminals to justice.


Some Past references
http://blog.trendmicro.com/rogue-av-theatrics-on-extended-run/
http://blog.trendmicro.com/a-million-search-strings-to-get-infected/

Use of Task Manager to close pop-up messages more safely
http://msmvps.com/blogs/harrywaldron/archive/2008/08/22/malware-close-encounters-close-pop-ups-using-task-manager-to-safely-exit.aspx



_____________________________


Harry Waldron - Security News & Best Practices Blog
Post #: 1
Page:   [1]
All Forums >> [Security, AntiVirus, and Patching] >> Breaking Virus & Security News >> AntiVirus 2009 - Fake BSODs and Reboots continue in new variants Page: [1]
Jump to:





New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts



  
Forum Software © ASPPlayground.NET Advanced Edition 2.4.5 ANSI

0.500