Sign in
Microsoft Malware Protection Center
Threat Research & Response Blog
Home
About
View More Blogs
Ecosystem Strategy Blog
Microsoft Accessibility Blog
Microsoft BlueHat Blog
Microsoft Malware Protection Center Blog
Microsoft Security Blog
Microsoft Security Response Center Blog
Security Development Lifecycle Blog
Security Research & Defense Blog
Security Tips & Talk Blog
Trustworthy Computing Blog
Resources
Partner
Microsoft Safety Scanner
Microsoft Security Response Center
Microsoft Security Essentials
Microsoft Forefront
Windows Defender
Microsoft AntiSpam
MMPC
Microsoft Malware Protection Center
Microsoft Security Intelligence Report
TechNet Blogs
>
Microsoft Malware Protection Center
>
August, 2008
August, 2008
Follow Us
RSS for Posts
@msftmmpc
facebook
Security@Microsoft
Security Newsletter
TwC Blogs Windows Phone Application
Get on-the-go access to the latest insights featured on our Trustworthy Computing blogs.
Twitter @msftmmpc
Monthly Archives
Archives
May 2013
(10)
April 2013
(9)
March 2013
(4)
February 2013
(4)
January 2013
(6)
December 2012
(7)
November 2012
(6)
October 2012
(10)
September 2012
(4)
August 2012
(7)
July 2012
(9)
June 2012
(4)
May 2012
(4)
April 2012
(6)
March 2012
(9)
February 2012
(5)
January 2012
(8)
December 2011
(5)
November 2011
(8)
October 2011
(8)
September 2011
(7)
August 2011
(8)
July 2011
(9)
June 2011
(10)
May 2011
(13)
April 2011
(6)
March 2011
(11)
February 2011
(9)
January 2011
(4)
December 2010
(7)
November 2010
(5)
October 2010
(12)
September 2010
(10)
August 2010
(8)
July 2010
(7)
June 2010
(6)
May 2010
(5)
April 2010
(5)
March 2010
(9)
February 2010
(7)
January 2010
(3)
December 2009
(4)
November 2009
(9)
October 2009
(6)
September 2009
(8)
August 2009
(4)
July 2009
(5)
June 2009
(7)
May 2009
(8)
April 2009
(18)
March 2009
(10)
February 2009
(8)
January 2009
(5)
December 2008
(11)
November 2008
(7)
October 2008
(12)
September 2008
(8)
August 2008
(11)
July 2008
(4)
June 2008
(3)
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Microsoft Malware Protection Center
A Normal Day at the Office
Posted
over 5 years ago
by
mmpc2
2
Comments
(Never ending story...) We arrived a bit early at the office the other day. It was a beautiful sunny day, you know, typical weather when you have to work :D Soon after arriving, we stumbled upon what became an interesting case. It was an executable file that apparently was related to the DNS cache poisoning attack that happened a few days prior, and we had to see what was it all about. One file , right? Below we will try to present the whole picture, starting with how the DNS cache server gets...
Microsoft Malware Protection Center
Year Old Worm Weasels its Way Aboard I.S.S.
Posted
over 5 years ago
by
mmpc2
1
Comments
According to several reports across the 'net, NASA revealed in a log report that a worm was discovered on some laptops aboard the International Space Station. The worm, known by some as Gammima which we call Worm:Win32/Taterf.gen!C , is at least a year old. NASA is known to perform experiments involving the order " Oligochaeta " whereas the Gammima worm does not thrive in the dirt. There is speculation on how exactly the computer worm arrived onto the lab laptops but as of yet, "mum's the word...
Microsoft Malware Protection Center
Manufacturing Fear
Posted
over 5 years ago
by
mmpc2
1
Comments
We’ve seen some particularly nasty malware recently that has prompted me to think about how people react to scare tactics and fear appeals. The kind of malicious software I’m thinking of in particular here is generally referred to as ‘rogue security software’, and it displays false and misleading messages regarding malware infections in order to convince affected users to perform a particular recommended action, which would normally involve ‘cleaning’ their machine in a particular way. This software...
Microsoft Malware Protection Center
Current Events Spark Round of Malware
Posted
over 5 years ago
by
mmpc2
Attackers are busy monitoring current events so they can distribute malware that appears relevant, such as sending spam message containing links to malware with contextual references to the 2008 Olympics in Beijing, or other current events. We recently began receiving reports of a new spam run with an attached malicious password-protected .ZIP file. The message text below is a sample of the message that was sent. Note that this is an example of social engineering. The context of the message is...
Microsoft Malware Protection Center
Another Malware Rides the 2008 Olympics Wave
Posted
over 5 years ago
by
mmpc2
We recently noticed a new malware threat that is spreading via email. The email contains a malicious ‘CHM’ (Microsoft Compiled HTML Help) file attachment which displays a document about free speech and media freedom during the Olympics in Chinese and English when opened. We have added detection for this threat and named it ‘ Backdoor:Win32/Xinia.B’ . You can read more about it in our encyclopedia. When the CHM file is opened, it will write a malicious file to “ c:\windows\downloaded program files...
Microsoft Malware Protection Center
MMPC Encyclopedia Top 5: Mostly Vundo
Posted
over 5 years ago
by
mmpc2
The following is a list of our top five most commonly viewed encyclopedia pages last month: TrojanSpy:Win32/Bancos.gen!A Win32/Vundo Trojan:Win32/Vundo.gen!H Trojan:Win32/Vundo.gen!P Win32/Alcan It looks like our readers are really interested in Win32/Vundo , also known as Win32/Virtumonde . Of the 5 most popular malware encyclopedia entries last month, 3 of them are Win32/Vundo related (2, 3, and 4). We have lots of details about it in our encyclopedia, but perhaps we should...
Microsoft Malware Protection Center
MMPC @ Gamefest 2008
Posted
over 5 years ago
by
mmpc2
2
Comments
I had the privilege of presenting a couple of weeks ago at Gamefest 2008 —a Microsoft sponsored technical conference targeted at the games industry. I spoke about game password stealers- what they do, which games are targeted by which families and the behaviors of those families, prevalence, number of variants and so on. This is a completely different type of audience than the security folks to whom I usually present and it was a very refreshing change of pace. These were sharp, savvy technologists...
Microsoft Malware Protection Center
Malware rides the wave of 2008 Beijing Olympics
Posted
over 5 years ago
by
mmpc2
1
Comments
The great anticipation that awaited the Olympics is matched by the anticipation for malware to make use of the event to infect users. The first executable malware taking advantage of this event has also arrived. The malware is disguised as a screen saver named "2008BeijingOlympics.scr". When you run the program, it actually displays some nice pictures of some of the Olympic Stadiums, so people may not notice the payload of installing a keylogger onto their computers. The trojan drops two files named...
Microsoft Malware Protection Center
MSRT on CAPTCHA breaking malware
Posted
over 5 years ago
by
mmpc2
1
Comments
A CAPTCHA (IPA: /ˈkæptʃə/) is a type of challenge-response test used in computing to ensure that the response is not generated by a computer. The process involves one computer (a server) asking a user to complete a simple test which the computer is able to generate and grade. Because other computers are unable to solve the CAPTCHA, any user entering a correct solution is presumed to be human. -- http://en.wikipedia.org/wiki/CAPTCHA Ever since Luis von Ahn and folks from Carnegie Mellon introduced...
Microsoft Malware Protection Center
My Favourite Time of the Year
Posted
over 5 years ago
by
mmpc2
2
Comments
It's when a VX group folds, and it has happened again. Twice, even. The day before the "much anticipated" ;-) EOF-DoomRiderz-rRlf group zine was released, rRlf announced that they were disbanding. This is something that we could have guessed anyway, based on the comment in Latin that was posted on their website a few days prior. While I didn't get a good translation for it, I understood it to mean something along the lines of "I must think about things". These days, VX groups are little more than...
Page 1 of 2 (11 items)
1
2