SEARCH RESULTS
 
Showing 1-10 of 26 records
 
Expand article

New DIY Malware in the Wild

The Article has images
2008-04-29 16:06:55 by HASH0x8b1f28c in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...DIY malware going to differentiate her market proposition? Adding a service in the form of managing and verifying the buyer's undetected binaries is slowly maturing into what 24/7 customer support service is for most market propositions - a commodity and something that's often taken for granted. In the case of this DIY malware, the author is...
 
 
 
 
 
Expand article

DIY Exploit Embedding Tool - A Proprietary Release

The Article has images
2008-04-28 04:45:00 by HASH0x8ae3bb8 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...DIY exploit embedding tools , those cybercrime 1.0 point'n'click exploits serving generators? Despite that the cybercrime 2.0 has to do with malicious economies of scale, that is the use of web malware exploitation kits compared to their 1.0 alternative, the DIY tools, such tools continue to be developed, like this proprietary one including...
 
 
 
 
 
Expand article

A Chinese DIY Multi-Feature Malware

The Article has images
2008-05-08 07:56:02 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...DIY malware with custom DDoS capabilities , the rest of the tools were released for this particular campaign Furthermore, in between the average password stealers , and DIY malware droppers , there are releases going beyond the average tools, which demonstrate a certain degree of creativity - like this one Key features the GUI C&C's...
 
 
 
 
 
Expand article

DIY Phishing Kits Introducing New Features

The Article has images
2008-05-15 14:11:43 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...DIY phishing kits trend started emerging around August, 2007 , with the distribution of a simple kit (screenshots included), whose objective was to make it easy for a phisher already possessing the phishing page, to enter a URL where all the data would be forwarded to. Several months later, the kit went 2.0 (screenshots included) and...
 
 
 
 
 
Expand article

DIY Fake MSN Client Stealing Passwords

The Article has images
2008-01-17 10:06:24 by HASH0x8b6b58c in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...DIY) nature , just like the many other related ones I discussed before. Custom error messages, two options for to kill or restore MSN after the password is obtained, and custom FTP settings to upload the accounting data. Why did they choose FTP compared to email as the leak point for the data? From my perspective uploading the accounting data...
 
 
 
 
 
Expand article

Yet Another DIY Proprietary Malware Builder

The Article has images
2008-05-21 09:18:09 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...DIY malware tools found in the wild , this is among the latest malware builders with a special emphasis on spreading from PCs to USB mass storage devices, and from USB mass storage devices to PCs. On 2008/04/28 when a sample generated binary was checked with multiple antivirus scanners, the detection was 2/32 with Panda Security and F-Secure...
 
 
 
 
 
Expand article

Skype Spamming Tool in the Wild

The Article has images
2008-04-07 10:51:23 by HASH0x8ad7880 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...DIY) perspective. This proprietary tool's main differentiation factor is its wildcast capability, namely searching for John will locate and send mass authorization requests to all usernames containing John. So basically, by implementing a simple timeout limit, mass authorization requests are successfully sent. The more average the username...
 
 
 
 
 
Expand article

The DDoS Attack Against CNN.com

The Article has images
2008-04-22 19:30:53 by HASH0x8b2d1ec in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...DIY tools, like the ones we've seen released for the purpose of attacking CNN.com CNN.com was indeed inacessible for a period of three hours according to NetCraft , and literally any web site performance monitoring too with a historical perspective for a host can prove the same The CNN News website has twice been affected since an earlier...
 
 
 
 
 
Expand article

Malware and Office Documents Joining Forces

The Article has images
2008-07-14 11:20:34 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...DIY tools for backdooring common office files are available for the script kiddies to take advantage of, some are naturally remaining proprietary tools , making them harder to analyze unless a copy is obtained. Like this one, generating "undetected" by signatures based scanning, office documents and spreadsheets that would drop the actual...