« New Spyware from Shavlik data team | Main | New critical patch, MS07-017 »

Friday, March 30, 2007

New Spyware from Shavlik data team

Shavlik Technologies released new data files for the NetChk Spyware and NetChk Protect application today.  Details are below:

 

- Jason Miller
 

*****************************************************

 
 

Version 5.6/5.8.1

XML Date: 03/29/2007

XML Version: 1.0.2.1506

XML Object Count: 103,731

 

Version 5.5

XML Date: 03/29/2007

XML Version: 1.0.2.1507

XML Object Count: 103,370

 

 

Added Aware.Cinmus

-Category: Adware

-Details: Adware.Cinmus is an Adware program that will display pop up advertisements from a Chinese web server. This program can be installed without user consent or knowledge.

-Comments: Initial addition to the database; please run Shavlik NetChk Spyware or Shavlik NetChk Protect for more details.

-Risk/Severity: Moderate

 

Added CNNIC

-Category: Malware

-Details: The CNNIC program is an Internet search hijacking program. This program will also hijack 404 pages to a controlling web server in

China

. In addition, this program can be installed without user consent or knowledge.

-Comments: Initial addition to the database; please run Shavlik NetChk Spyware or Shavlik NetChk Protect for more details.

-Risk/Severity: Moderate

 

Added DeskAdTop

-Category: Malware

-Details: The DeskAdTop program displays pop-up advertisements. This program can be installed without user consent or knowledge.

-Comments: Initial addition to the database; please run Shavlik NetChk Spyware or Shavlik NetChk Protect for more details.

-Risk/Severity: Moderate

 

Added Win32/Delf.bgb

-Category: Malware

-Details: The Win32/Delf.bgb program is a Trojan downloader that can install potentially unwanted software without user consent or knowledge.

-Comments: Initial addition to the database; please run Shavlik NetChk Spyware or Shavlik NetChk Protect for more details.

-Risk/Severity: Critical

  

Added Win32.SillyDl.CKP

-Category: Malware

-Details: The Win32.SillyDL.CKP program is a Trojan downloader. This program has the ability to install other programs without user consent or knowledge.

-Comments: Initial addition to the database; please run Shavlik NetChk Spyware or Shavlik NetChk Protect for more details.

-Risk/Severity: Critical

 

Added new version of Baidu

-Category: Malware

-Details: The Bauidu program is a Chinese language based search toolbar. This program will hijack search terms, search queries and 404 page results. In addition, this program has been found to be installed without user consent or knowledge.

-Comments: New version of HotBar added to the database.

-Risk/Severity: Moderate

 

Updated iTunes

- Added detection logic for Start Menu folders and Desktop links for iTunes (French OS)

TrackBack

TrackBack URL for this entry:
http://www.typepad.com/services/trackback/6a00d834540ad569e200d83468b27e69e2

Listed below are links to weblogs that reference New Spyware from Shavlik data team:

Comments

Well this should be cleaned up now but its interesting all the same. When you look back at the older versions of spyware and how they have evolved in a little over a year.

Cheers for your post.

Verify your Comment

Previewing your Comment

This is only a preview. Your comment has not yet been posted.

Working...
Your comment could not be posted. Error type:
Your comment has been saved. Comments are moderated and will not appear until approved by the author. Post another comment

The letters and numbers you entered did not match the image. Please try again.

As a final step before posting your comment, enter the letters and numbers you see in the image below. This prevents automated programs from posting comments.

Having trouble reading this image? View an alternate.

Working...

Post a comment

Comments are moderated, and will not appear until the author has approved them.

My Photo