More Zunkers!!!

Analyzing the pattern of the binary file installed by Zunker and comparing it with our samples, we have come across 32 similar files.



  


On the left, the graphical representation of the binary file belonging to the first Zunker we came across and on the right, the graphical representation of the new similar files we have found.


 



 


As you can notice, they are alike. If we compare these graphs with the ones belonging to other malware, such as Gaobot.AAF, we will see that they are very different from these ones.


 


Analyzing the similar files, we have come across 18 different servers where they were installed:



            – 6 of them are active at the present moment.


            – 4 of them contain files belonging to Zunker but they don’t seem to be working.


            – 8 of them are inactive.


 


Among the servers that are active, different versions of the bot can be found:


ZUnker 1.4.4-1b


ZUnker 1.4.4-1b-10003  


ZUnker 1.4.4b


ZUnker 1.4.5b   

Tags: ,

Posted under Malware Alerts

This post was written by Ted on May 16, 2007

Tags: ,

MPack uncovered!


In Cybercrime… for sale” we promised to talk about MPack. The latest version (MPack v0.851) we have just discovered is pretty active right now as you can see in the stats:



Where is this tool infecting? Well, it is a question very easy to answer:



It also has a list of the latest sites prepared to infect using MPack:



Vicente has been studying it for some time and has developed a fantastic report for us.


 

Tags:

Posted under Malware Alerts

This post was written by Ted on May 11, 2007

Tags:

New Alanchun wave

Our large malware honeynet also known as TruPrevent© is detecting a new Alanchun wave. In a few hours we have received some hundreds of reports about this one, named Trj/Alanchun.VT. It is just another Trojan with rootkit capabilities and prepared to flood the Internet with spam.


In case you have TruPrevent© don’t worry, otherwise update your AV software right now!

Tags: , ,

Posted under Malware Alerts

This post was written by Ted on May 9, 2007

Tags: , ,

Spyware Remover Help

Don’t get caught with a deadly virus. Get the protection your PC needs. Get Panda Antivirus 2008 for your desktop.

Download a free virus and spyware remover ebook and learn how to keep your computer clean. FREE !

I am a self employed computer tech that has made his living for the past 4 years removing spyware and virus from computers. Computer repair shops charge $200.00 or more just to clean spyware from your computer, and if they don’t install any prevention, or teach you how to keep your computer clean and secure (why would they? they are in the repair business) you will be back at the computer repair shop spending another $200.00 in no time because you are infected again.

You can take a chance and purchase spyware removal software, but do you know what works? and what is a waste of your money? I do, and I want to tell you about it.

I have created a FREE easy to follow manual that all computer users should own. Especially broadband users. I give this handy manual to my customers to help them learn to keep their computers virus free.
My customers are non technical, they just want their computer to work when they turn it on so I made the manual easy for everyone to understand no matter what your computer experience level happens to be.

Download the free manual, it’s yours. Share it with your family, email it to your friends, coworkers and anybody else you can think of. Together we can teach them how to keep their computers clean.

Why give it away for free? There will always be more than enough work for me in the computer cleaning business, but the number of viruses in the wild is increasing at an alarming level because people don’t use some simple prevention that could stop the spread. The virus’s are getting nastier than ever. They are targeting your personal information, operating system files, and worst of all they can take remote control over your computer and use it as part of an attack without you knowing. This has to stop. I am on a mission to do what I can to help as many people as possible learn how to prevent their computers becoming infected. If we work together, and do a few simple things to keep our computers free from infection, we can make a difference.
In the manual, I show you how to clean, and protect your computer.

Reading the manual, you will learn:
What is spyware.
What is a virus.
Methods of infection.
How to stop those annoying pop-ups.
How to remove spyware from your computer.
How to prevent future spyware infections.
How to prevent virus and trojan infections.
How to prevent hackers from easily gaining access to your computer.

Learn to remove and protect yourself from Spyware, it’s easier than you think.


Get the manual – right click on the “Download the manual” link below

FireFox users “Save Link As”

Internet Explorer users “Save Target As”


Download the manual

Let’s eliminate this guy Spyware remover help

Tags: , , ,

Posted under

This post was written by Ted on March 18, 2007

Tags: , , ,

Page 68 of 68« First...1020306465666768