Questions tagged [malware]

Malware is any software application which subverts the will of the legitimate owner of a computer, by means of force or subterfuge, with or without personal or monetary gain on the part of the creator.

"Malware" is a portmanteau of "malicious" and "software"

Common forms of malware include:

  • Botnet clients, which grant the malware author some degree of control over the compromised operating system and are generally employed in sending spam e-mail and may be rented out to perform DDoS attacks.
  • Data exfiltrators, which collect and transmit data about the computer they reside on back to the creator. These are commonly used to target login and account details for financial, social networking, and gaming websites.
  • Rogue Utility Applications, which attempt to use scare tactics in order to entice the computer's user to purchase the "full version" of the Rogue Utility.
  • Adware, which causes advertisements to appear on the user's desktop, in webpages, or elsewhere.
  • Rootkits, which attempt to conceal the presence of both the root kit and (usually) an accompanying piece of malware from another category from standard system tools and diagnostic utilities.
333 questions
0
votes
3 answers

DirectAdmin Centos4 server has virus

I have a problem with a webserver that runs Centos4 with DirectAdmin. Since a few weeks some websites hosted on it are not redirecting on search engines properly, they are redirected to some malware site, resulting in a ban from google. Now I have…
Roger Far
  • 341
  • 1
  • 5
  • 17
0
votes
1 answer

vi.recover/update command appears every minute in cron log. (POSSIBLE VIRUS)

UPDATE (7th Dec 2010) & WARNING: I copied the files discussed below (from the /var/tmp/vi.recover directory) to my Windows PC and sacnned with ESET NOD 32. It identifed two of the file (sshd: and juno) as the Linux/RST.B virus. Not sure if it is…
columbo
  • 219
  • 2
  • 12
0
votes
2 answers

Removing VirTool:Win32/VBInject.gen!DG

i get this little bugger poping up every start up, my microsoft security essentials stops initial attempt and there no threat till next start up. I was wondering, if there any tools to check and remove items that actually initiate execution. I…
user51768
0
votes
5 answers

Can anyone think of a way of preventing an XP client from performing DNS lookups for external domains?

As usual, we're trying to tighten security even further in our organisation. The current focus for me is the possibility of a compromised XP client from using DNS lookups as a command/control channel (Google "dns malware command control…
user56477
0
votes
1 answer

What is the expamapi.dll in windows folder?

I'm getting a virus message related to expamapi.dll in c:\Windows (windows xp). When I used ProcessExplorer, this dll is related to a bunch of processes, which isn't making sense. Some of the processes listed…
0
votes
2 answers

Windows 2003 Server monitoring tool for file writing

I am having a bit of a trojan problem. We have a Windows 2003 Server configured with a partition for file sharing for backup purposes. In our network there are about 50+ computers with access to these folders. The problem is that each time the…
Crishu
  • 3
  • 1
0
votes
1 answer

Ubuntu, Samba, Shared folders and unknown files

I am using ubuntu on my laptop with a EDGE connection. I have no computers on my LAN. First time this happened as a coincidence when i left a folder shared after office on my laptop and found it infected. After that i have tried to reproduce the…
Shoaibi
  • 809
  • 1
  • 10
  • 28
0
votes
4 answers

Website has links to Malware, Caused by virus

The computer that I do my most webdevelopment work with caught a virus. A website that I am currently working on was compromised(I think by phpDesigners stored FTP password). I currently get : I…
Cédric Girard
  • 417
  • 2
  • 12
  • 25
0
votes
3 answers

Determine how the worm spread in the network

We had worm infestation problem in our network. I have cleaned all the worms and have taken appropiate steps. I wanted to how do you determine how the worm got spread in the network. Thanks, Gary.. thanks a lot guys for all the interesting…
user45019
  • 21
  • 3
0
votes
1 answer

/manual/cache folder on my server?

On our site's server, once managed by someone who's no longer with us, there's a folder named "/manual/cache" which contains txt files named+like+this, mostly using pornographic-related keywords. The content is mainly spam-like gibberish. My…
Olivier Tremblay
  • 347
  • 3
  • 16