ESET Threat Blog

Archive for the 'Fake updates' Category

  •  
by Stephen Cobb ESET Security Evangelist
May 8, 2012 at 10:45 pm

We received a worrying notice today from the Internet Crime Complaint Center (IC3) which is a partnership between the Federal Bureau of Investigation (FBI) and the National White Collar Crime Center (NW3C), The headline reads: "Malware Installed on Travelers' Laptops Through Software Updates on Hotel Internet Connections." We felt that the warning which followed the … Read More…

Comments
4

?>
by Aryeh Goretsky Distinguished Researcher
April 21, 2010 at 12:28 pm

Earlier this month, we reported on the massive new Koobface campaign making the rounds through Facebook and how it tricked users into downloading and running it through that tenet of social engineering, the fake codec. We now have a video showing how the Koobface worm tricks users into running it:

NOTE: The audio is not completely … Read More…

Comments
0

?>
by David Harley Senior Research Fellow
March 31, 2010 at 12:42 am

An article at Help Net Security by Zeljka Zorz describes malware written in Visual BASIC which masquerades as legitimate updates DeepFreeze, Java, Windows, Adobe Reader, and other legitimate applications.
Zeljka says:
"They have the same icon and version details, and can fool regular users and experts alike…it opens the DHCP client, the DNS client, Network share and open … Read More…

Comments
0

?>
by David Harley Senior Research Fellow
March 26, 2010 at 4:05 am

Round here, we're more than a little concerned about fake/rogue antivirus (and other fake security software). It's an ugly form of ransomware that hurts its victims in many ways.
It scares them by threatening dire consequences and damage from malware that doesn't exist (except in the sense that the fake AV is itself malware), in order … Read More…

Comments
0

?>
by David Harley Senior Research Fellow
October 22, 2009 at 7:57 am

[Update: I notice that at about the same time that I posted this, Sophos also flagged a blog reporting a somewhat similar fake update for Microsoft Outlook/Outlook Express (KB910721). The message is a lot different and links to a different site pretending to be Microsoft's update site, but is clearly not to be trusted. So the ... Read More…

Comments
0

?>
Share |
Subscribe by Email
To receive new posts automatically through email, enter your email address:

Delivered by FeedBurner

Blog Search
Archives

Switch to our mobile site