Showing posts with label malware attack. Show all posts
Showing posts with label malware attack. Show all posts

Tuesday, November 10, 2009

Download Free PC Tools Firewall Plus 6.0.0.66

A personal firewall that protects your computer from intruders and controls the network traffic in and out of your PC.

PC Tools Firewall Plus is a powerful personal firewall for Windows that protects your computer from intruders and controls the network traffic in and out of your PC. By monitoring applications that connect to the network Firewall Plus can stop Trojans, backdoors, keyloggers and other malware from damaging your computer and stealing your private information.

PC Tools Firewall Plus is advanced technology designed specially for people, not experts. Powerful prevention against attacks and known exploits is activated by default and advanced users can also easily create their own packet filtering rules to customize the network defenses. All you need to do is install it for immediate and automatic ongoing protection.

Tuesday, November 3, 2009

Protect and Prevent Computer from Spyware Infection

Spyware is malicious software (malware) that installs itself or runs on your computer without providing you with adequate notice, consent or control. It can monitor your online behaviour or collect your sensitive personal information such as personally identifiable information and passwords. It could as well display annoying popup advertisements, change your computer settings or cause your computer to run slowly. Because spyware does not obtain your consent before installing or running on your computer, and may not immediately display any noticeable symptoms after it infects your computer, you might not actually be aware of its presence in your PC.

There are many sources from which spyware and other malware could be introduced into your system. Spyware is most commonly installed through free software downloads, such as file sharing, screen savers and search toolbars. Also, they could be installed by websites, downloaded programs, or software you might install from a CD, DVD, external hard disk, or other removable media.

Tuesday, October 27, 2009

Virus - Exploit.PDF-JS.Gen

There are no obvious symptoms until the malware manages to infiltrate the system. This can happen when opening a crafted PDF file and the javascript code inside the file is executed.

Exploit:Win32/Pidief.D; Exploit:W32/AdobeReader.QQ

This is a generic detection for specially crafted PDF files which exploit different vulnerabilities found in Adobe PDF Reader's Javascript engine in order to execute malicious code on user's computer. The exploitation mainly involves the following two functions:
util.printf() - if an attacker sends a string long enough to generate a
stack-based buffer overflow he will then be able to
execute arbitrary code on user's computer with the
same level privileges as the user who opened the PDF
file
Collab.colectEmailInfo() - a stack-based buffer overflow can be
caused by passing a string long enough (at least 44952
characters) as a parameter in the msg field of this
function.

Sunday, October 25, 2009

Malicious Advertisements (malvertising)

Malicious ads (also known as “malvertising”) may also be a way for a website to experience a malware attack. Rather than infecting a website directly, the hackers infect an ad network (perhaps even by simply creating an ad that looks legitimate, but actually serves malware to the user). One their malicious ad is in the ad network, it can be presented to users on various websites by the ad network simply rotating through its inventory of ads. This is often a difficult attack to detect on a website.

Example of a malvertising popup imitating anti-virus software