Forum     

Go Back   Digit Technology Discussion Forum > News > Technology News
Register FAQ Calendar Mark Forums Read

Technology News News from the world of technology that our members stumble across. NOTE: Sources to be mentioned at the beginning of each post.


Closed Thread
 
LinkBack Thread Tools Display Modes
Old 29-12-2007, 11:27 PM   #1 (permalink)
Thinking Different
 
sourav123's Avatar
 
Join Date: Dec 2005
Location: Bangalore, India
Posts: 156
Post Trojan capitalizes on Bhutto assassination


Whatever else malware creators might be, they're quick to take advantage of any event that might enable a new attack vector. The Storm Worm has already morphed twice in the past week, attacking with both a Christmas and a New Year's theme. Now, less than two days after the assassination of Benazir Bhutto, former Prime Minister of Pakistan and leader of the Pakistan People's Party, there's a new malicious Javascript in town. The script in question isn't brand-new, but its creators have quickly adapted it to prey on surfers interested in additional details regarding Bhutto's death.

According to Trend Micro researchers, certain sites purporting to contain information on the assassination have malicious Javascript embedded within them. End users wanting more information on the event can conceivably be directed to one of these infected sites, where the script (identified by Trend Micro as JS_AGENT.AEVE) runs and downloads a Trojan (TROJ_SMALL.LDZ). This new Trojan then downloads and installs WORM_HITAPOP.O and TROJ_AGENT.AFFR.

While the authors of this particular gem are obviously trying to exploit Bhutto's murder, Trend Micro found evidence that the malicious Javascript is actually present on a number of sites, including Autoworld, Vino, MSN, and BlogSpot. The number of infected sites that specifically discuss the assassination is small compared to the total number of sites that appear to be infected—103 vs. 4,240—but the ratio will undoubtedly shift if the topic proves to be an effective attack vector. Trend Micro has stated that its customers are already protected from the exploit; other vendors will probably be quick to follow with patches as they are needed.

Source: http://arstechnica.com/news.ars/post...ssination.html
__________________
There is nothing more powerful than an idea whose time has come.
sourav123 is offline  
Advertisements. Register and be a member of the community to get rid of them.
Advertisement

Old 29-12-2007, 11:31 PM   #2 (permalink)
!! RecuZant By Birth !!
 
naveen_reloaded's Avatar
 
Join Date: May 2005
Location: In Everyone`s Heart
Posts: 2,985
Default Re: Trojan capitalizes on Bhutto assassination

ya read it just now ..
sad...
F^ck thos spammers..
__________________
Know My Thoughts..
Visit my Blog @ www.Urssiva.com
Visit My Tech Blog @ www.CloudTechnica.com
naveen_reloaded is offline  
Old 30-12-2007, 11:14 AM   #3 (permalink)
In The Zone
 
Join Date: Sep 2007
Location: Shadow's Lair
Posts: 268
Thumbs up Re: Trojan capitalizes on Bhutto assassination

You can check this link for more visual info:

http://www.avertlabs.com/research/bl...ading-malware/

Seems like Mcafee have updated their AV database to counter this one.
shadow2get is offline  
Closed Thread

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Benazir Bhutto killed kalpik Random News 54 29-12-2007 02:11 PM
TROJAN VULNERABILITY - Keylogging Trojan Dodges Anti-virus Detection techtronic Technology News 1 26-05-2007 03:10 PM
some trojan or wat nishant_garg89 QnA (read only) 2 06-12-2006 09:21 AM
TROJAN or what? anomit QnA (read only) 4 05-05-2005 12:28 PM

 
Latest Threads
- by Tenida
- by clinton
- by Anorion

Advertisement




All times are GMT +5.5. The time now is 03:15 PM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.

Search Engine Optimization by vBSEO 3.3.2