Download.com también está disponible en Español Visitar Sitio

Trojan

New Web exploit targets multiple platforms

Researchers at F-Secure have uncovered a new exploit that attempts to install a backdoor malware program on Windows, Linux, and OS X machines. As with other malware, this uses social engineering approaches to try tricking users, but in addition it runs a check to see what operating system the user is running and then issues a malware installer for that platform.

The attack was found on a Columbian transport Web site, where once visited, a Java applet would run using a self-signed certificate. On all platforms this certificate will flag a warning that notifies the user it is not from … Read more

DNSChanger apocalypse: Like Y2K, but even snoozier

Despite the dire warnings about the Internet going dead for thousands of people today, I am happy to report that it's all business as usual. You may proceed to the cute cat videos.

After months of warnings, the FBI pulled the plug on servers that were set up to block a Trojan that was hijacking computers by changing their DNS settings to go to rogue servers and serving up ads. The government set up legitimate DNS servers so infected computers wouldn't lose their online access, but turned off that network today, potentially stranding thousands of computers from the … Read more

Lock down USB drives in Windows with USB Disk Manager

USB drives are convenient for storage and for transferring data to other computers. This convenience also makes them a great delivery system for malware. If you're comfortable with the Windows Registry or know how to set Group Policies, you can lock down your PC's USB drives. A much simpler way is by using USB Disk Manager.

USB Disk Manager is a small Windows program that can help you manage the permissions of USB drives. The portable app doesn't need to be installed and can be run from a folder on your hard drive or from a USB … Read more

Apple, Google remove Trojan spamming app from stores

Apple and Google removed an app from their app stores after it was revealed to be harvesting users' phone contacts as spam targets.

The Find and Call app was originally thought to be an SMS worm but later discovered to be a Trojan, according to Kaspersky Lab. The Russian software security firm said it alerted by Apple and Google to the presence of the malware in their stores, leading to the app's removal.

Apple confirmed it removed the app for violating App Store rules.

"The Find & Call app has been removed from the App Store due to … Read more

What the DNSChanger malware is -- and why you should care (FAQ)

The DNSChanger malware has been around for years, but its deleterious effects are coming to a head this Monday. Here's what you have to know about it, and how to fix it.

What is DNSChanger? DNSChanger is a Trojan horse malware with many variants. It changes an infected computer's DNS settings to point to rogue, bad guy-controlled servers. These then show you ads that look real, but aren't. Basically, it redirects your legitimate Web surfing to malicious Web sites that then attempt to steal personal information and generate illegitimate ad revenue.

How much money did DNSChanger make? … Read more

New OS X Tibet malware variant surfaces

Security company Kaspersky Labs has intercepted a new variant of the Tibet malware for OS X, which is being distributed to specific Uyghur activist groups as part of a seemingly politically motivated APT (advanced persistent threat) attack.

The malware is being distributed in e-mails to certain Uyghur Mac users, and is contained within a ZIP file called "matiriyal.zip." If this file is opened it will reveal an image file and a text file that is a disguised OS X application that if run will install the malware. Once installed, the malware will connect to a command-and-control server … Read more

The 404 1,081: Where nobody's perfect (podcast)

Leaked from today's 404 episode:

-Facebook quietly adds creepy "Find Friends Nearby" feature.

-Apple no longer claims immunity from viruses on its Web store.

-New site "weknowhatyouredoing.com" tracks Twitter and posts incriminating patterns.

-Hot Toys' Joker action figure is serious...ly amazing.

-No one watches TV, Nielsen, and you know it.… Read more

Behind the 'Flame' malware spying on Mideast computers (FAQ)

The Flame worm that has targeted computers in the Middle East is being called "the most sophisticated cyberweapon yet unleashed" by Kaspersky Lab researchers who discovered it. Lurking on computers for at least five years, the malware has the ability to steal data, eavesdrop on conversations, and take screen captures of instant message exchanges, making it dangerous to any victim. But a possible link to malware found on computers in Iran's oil sector has experts saying it's got to be the work of a nation-state.

CNET talked with Roel Schouwenberg, senior researcher at Kaspersky, the company … Read more

Iranian and Syrian dissidents targeted by spyware

Web users in Iran and Syria attempting to use a proxy tool to freely surf the Internet are reportedly being tracked by a new Trojan.

The proxy software known as Simurgh is used by many Iranian and Syrian citizens to make it seem as if their secure Internet connections are coming from a different country. Such proxy programs are common ways to mask a user's PC and Internet information in order to circumvent local censorship restrictions.

But a back-doored verson of Simurgh discovered by researchers at the University of Toronto is carrying a payload of malware -- one designed … Read more

Delete Doctor throws out those files that just won't leave

We've seen many file-deleting utilities. Most are freeware offering "secure" file deletion by overwriting files on your disk multiple times until the data is unrecoverable. Kevin Solway's Delete Doctor is a bit different. It's designed to delete those files that just don't want to leave your system, such as viruses and malware, files in shared folders, and files currently in use. To that end, it offers four different methods for removing files from your system. This simple freeware also has drag-and-drop capability.

Delete Doctor's interface is compact but efficient, beginning with an entry … Read more