PDA

Visualizza versione completa : "W32.Fanbot.A" - Allerta per falso eseguibile SKYPE


Giorgius
18-10-2005, 11.51.44
IRCbot Trojan Spoofing Skype

http://www.trendmicro.com/vinfo/images/WORM_MYTOB1.gif

...The malicious code disguised as VoIP software client, version 1.4, which was first released last month . If executed, it attaches a malware program that displays a fake "installation error" box...

Leggi: http://www.internetnews.com/security/article.php/3556741

Giorgius
18-10-2005, 11.55.58
Aliases:
W32.Fanbot.A@mm (Symantec), WORM_FANBOT.A (Trend Micro), W32/Fanbot-H (Sophos)

Effetti:
W32.Fanbot.A@mm is a mass-mailing worm that lowers security settings on the compromised computer. It also spreads by exploiting the Microsoft Windows Plug and Play Buffer Overflow Vulnerability (described in Microsoft Security Bulletin MS05-039) and through peer-to-peer networks.

Info:
http://esp.sophos.com/virusinfo/analyses/w32fanboth.html
http://es.trendmicro-europe.com/enterprise/vinfo/encyclopedia.php?LYstr=VMAINDATA&vNav=1&VName=WORM_FANBOT.A
http://alerta-antivirus.red.es/virus/detalle_virus.html?cod=5442
http://www.symantec.com/avcenter/venc/data/w32.fanbot.a@mm.html


Aggiornamento AntiSpyware al 17/10/05 ;)

Giorgius
18-10-2005, 12.00.01
Il Trojan in questione viene distribuito come un aggiornamento a Skype, il popolarissimo software di telefonia via Internet, ed è una variante del già noto IRCbot...

Leggi: http://www.azpoint.net/news/Software_News_11811.asp