Archives for 

Microsoft Malware

Careto/Mask APT cyber-espionage operations running and undetected for 7 long years

Its almost sounded unbelievable when Kaspersky research published a cyber espionage APT campaign MASK (Careto) that’s been running in the wild since 2007, undetected, targeting 31 countries.   The complexity of the tools used for MAST by the attackers are very sophisticated which makes its very special. This includes an extremely sophisticated piece of malware, a […]
Share Button
Continue reading →

Largest Website in Sweden Aftonbladet serves Malicious Code for Internet Explorer users

Its very common lately for sites spreading malware from ads. The ad which are served from Google and Microsoft may relie on third party syndication may potentially be compromised which may lead to malware distribution.  A similar incident happened as reported by Kaspersky that the largest website of sweden was spreading scare-ware to its users. […]
Share Button
Continue reading →

PNG Image Metadata leads to New iFrame Injections

Peter Gramantik, a malware researchers from Sucuri has discovered a new way to distribute malware that relies on reading  JavaScript code stored in an obfuscated PNG file’s metadata to trigger iFrame injections. This injection makes it very harder for antivirus detection because the injection  method is  deeply engrained in the image’s metadata. This iframe can be seen […]
Share Button
Continue reading →

GameOver Latest Zeus variant uses Encryption to bypass Detection – Gary

  GameOver Zeus is a notorious malware family that makes fraudulent transactions from your bank accounts from the infected host. A new variant of GameOver Zeus uses encryption to hide itself while propagation which makes it almost impossible to be detected by modern day antivirus. The malware encrypts itself so well that it can pass the […]
Share Button
Continue reading →

Windows Malware can Infects Android Devices via PC USB

Researchers from Symantec have identified a PC Trojan which can compromise  Android smartphone by installing ‘malware ‘when connected via PC. The Windows Variant is known as Trojan.Droidpak, drops a malicious DLL to the windows system and registering DLL as a windows service. Then the  DLL downloads a configuration file (from  active remote server) that downloads […]
Share Button
Continue reading →

Microsoft blog hacked by Syrian Electronic Army as promised last week

Its not a good time for Microsoft . SEA defaced Microsoft’s office blog as promised last week and Microsoft at its keens again. It appears that SEA has been trolling Microsoft by compromising much larger than people though. The compromised Microsoft twitter read :   “Dear @Microsoft, Changing CMS will not help you if your […]
Share Button
Continue reading →

SEA Hackers’ Latest Victim – Microsoft’s Official Blog, Email and Twitter Accounts!

Eleven days after hijacking Skype’s social media services, the Syrian Electronic Army (SEA) has targeted Microsoft again by hacking the company’s official blog, employee emails and Twitter accounts. To prove the hack, SEA hackers left a bold message on Microsoft’s Official blog page that read “SEA Syrian Electronic Army Was Here… long live Syria!”. The […]
Share Button
Continue reading →

Yahoo Ad Network infects millions of Yahoo.com users with Malware infection

For the last couple of days ,  a good percentage of users visiting yahoo.com were infected by driveby malware.  Malacious ads were served from ads.yahoo.com and the first incident was report on December 30th 2013 and Yahoo has not been able to taken them down from their own network.     So how does all […]
Share Button
Continue reading →

Internet Explorer zero-day exploit makes all versions of Internet Explorer vulnerable – Security advisory 2887505

Microsoft releases Security advisory 2887505 which infected all versions of Internet Explorer.  Currently based on Microsoft’s observation all targeted attacks directed for Internet Explorer 8 and 9. As per Microsoft “ This issue could allow remote code execution if an affected system browses to a website containing malicious content directed towards the specific browser type. […]
Share Button
Continue reading →

New Banking Trojan on the wild – Hesperbot discovered by ESET

ESET researchers have spotted a new malware spreading campaign targeting online banking users in Turkey, the Czech Republic, Portugal and the United Kingdom.  It uses phishing campaigns related to trustworthy organizations to infect user machines. Based on Esset analysis, the new banking Trojan Hesperbot with functionality similar to the most notorious Zeus & Spyeye. However […]
Share Button
Continue reading →