Sign in
Microsoft Malware Protection Center
Threat Research & Response Blog
Home
About
View More Blogs
Ecosystem Strategy Blog
Microsoft Accessibility Blog
Microsoft BlueHat Blog
Microsoft Malware Protection Center Blog
Microsoft Security Blog
Microsoft Security Response Center Blog
Security Development Lifecycle Blog
Security Research & Defense Blog
Security Tips & Talk Blog
Trustworthy Computing Blog
Resources
Partner
Microsoft Safety Scanner
Microsoft Security Response Center
Microsoft Security Essentials
Microsoft Forefront
Windows Defender
Microsoft AntiSpam
MMPC
Microsoft Malware Protection Center
Microsoft Security Intelligence Report
TechNet Blogs
>
Microsoft Malware Protection Center
>
August, 2011
August, 2011
Follow Us
RSS for Posts
@msftmmpc
facebook
Security@Microsoft
Security Newsletter
TwC Blogs Windows Phone Application
Get on-the-go access to the latest insights featured on our Trustworthy Computing blogs.
Twitter @msftmmpc
Monthly Archives
Archives
May 2013
(10)
April 2013
(9)
March 2013
(4)
February 2013
(4)
January 2013
(6)
December 2012
(7)
November 2012
(6)
October 2012
(10)
September 2012
(4)
August 2012
(7)
July 2012
(9)
June 2012
(4)
May 2012
(4)
April 2012
(6)
March 2012
(9)
February 2012
(5)
January 2012
(8)
December 2011
(5)
November 2011
(8)
October 2011
(8)
September 2011
(7)
August 2011
(8)
July 2011
(9)
June 2011
(10)
May 2011
(13)
April 2011
(6)
March 2011
(11)
February 2011
(9)
January 2011
(4)
December 2010
(7)
November 2010
(5)
October 2010
(12)
September 2010
(10)
August 2010
(8)
July 2010
(7)
June 2010
(6)
May 2010
(5)
April 2010
(5)
March 2010
(9)
February 2010
(7)
January 2010
(3)
December 2009
(4)
November 2009
(9)
October 2009
(6)
September 2009
(8)
August 2009
(4)
July 2009
(5)
June 2009
(7)
May 2009
(8)
April 2009
(18)
March 2009
(10)
February 2009
(8)
January 2009
(5)
December 2008
(11)
November 2008
(7)
October 2008
(12)
September 2008
(8)
August 2008
(11)
July 2008
(4)
June 2008
(3)
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Microsoft Malware Protection Center
More on Morto
Posted
over 2 years ago
by
msft-mmpc
As some of you might be aware, we've recently been seeing low levels of reports of Win32/Morto - a worm that causes headaches for users who may have less than ideal password policies - so we thought we'd look at this in more detail. The number of computers reporting infections or infection attempts continues to remain quite low . In total, the MMPC has seen only a few thousand unique computers report this issue. For an idea of how this kind of volume compares to other families, see the following...
Microsoft Malware Protection Center
New worm targeting weak passwords on Remote Desktop connections (port 3389)
Posted
over 2 years ago
by
msft-mmpc
We've had reports of a new worm in the wild and that generates increased RDP traffic for our users on port 3389. Although the overall numbers of computers reporting detections are low in comparison to more established malware families, the traffic it generates is noticeable. The worm is detected as Worm:Win32/Morto.A and you can see a detailed description of it at Worm:Win32/Morto.A . Morto attempts to compromise Remote Desktop connections in order to penetrate remote systems, by exploiting weak...
Microsoft Malware Protection Center
Keeping malware away - how do some countries do it?
Posted
over 2 years ago
by
msft-mmpc
Our friend Tim Rains over at Trustworthy Computing (TwC) has just concluded a six-part series in which he took a closer look at the threat landscape in locations that have the lowest infection rates in the world. Using data from our Security Intelligence Report , the series investigates why the same countries and regions consistently pop up as having relatively low malware infection rates, as normalized using a metric called Computers Cleaned per Mille (CCM) . The series is available in the following...
Microsoft Malware Protection Center
Can we believe our eyes?
Posted
over 2 years ago
by
msft-mmpc
Several days ago, one of our customers submitted a sample (SHA1: fbe71968d4c5399c2906b56d9feadf19a35beb97, detected as TrojanDropper:Win32/Vundo.L ). This trojan hijacks the hosts “ vk.com ” and “ vkontakte.ru ” (both social networking sites in Russia)and redirects them to 92.38.209.252, but achieves this in an unusual way. A common method used to hijack a website and redirect it to a site of the attacker’s choice is to add an entry in the Windows hosts file located in the %SystemRoot...
Microsoft Malware Protection Center
MSRT August '11: FakeSysdef
Posted
over 2 years ago
by
msft-mmpc
This month's Malicious Software Removal Tool ( MSRT ) includes Win32/FakeSysdef - one of the most prevalent trojans affecting our support groups over the past few months. We've discussed this threat in previous blogs ( 1 , 2 ), and turn to this excerpt from our encyclopedia for some more detail: Win32/FakeSysdef is a family of programs that claim to scan for hardware defects related to system memory, hard drives and over-all system performance. They scan the system, show fake hardware problems...
Microsoft Malware Protection Center
A Bit of Archaeology
Posted
over 2 years ago
by
msft-mmpc
This entry has nothing to do with malware. Just so you know. Some people know that I like the demo scene. I've been following it for more than 20 years now, but it's even older than that. I like the size-optimisation competitions best, and I've even participated in a few - most recently, smallest downloader on 32-bit Windows XP: 233 bytes (255 bytes on Vista and later), print the EICAR test string: 56 bytes. Of particular interest to me are the demos in 512 bytes or less. They are so small that...
Microsoft Malware Protection Center
UAC plays defense against Malware
Posted
over 2 years ago
by
msft-mmpc
User Account Control (UAC) was probably the first new feature of Windows Vista that most users encountered, and received considerable attention when the OS was released. UAC gives a way for users to act as computer administrators just for administrator tasks. This is important to only allow software that requires elevated rights to run with such powerful (and potentially dangerous) rights. Over time, UAC prompts have diminished, especially with the release of Windows 7. But it's clear malware authors...
Microsoft Malware Protection Center
MMPC Portal available in 35 languages
Posted
over 2 years ago
by
msft-mmpc
We’d like to announce the launch of the automatic translations feature on the MMPC Portal. Take a look at http://www.microsoft.com/security/portal/ , scroll down to the bottom of the page, and translate to the language of your choice. These translations are completely automatic, and are using Microsoft Bing technology . This technology is considered state of the art in machine translation, and the quality is undergoing constant improvements. When applying the translation, the original...
Page 1 of 1 (8 items)