Questions tagged [malware]

Malware is any software application which subverts the will of the legitimate owner of a computer, by means of force or subterfuge, with or without personal or monetary gain on the part of the creator.

"Malware" is a portmanteau of "malicious" and "software"

Common forms of malware include:

  • Botnet clients, which grant the malware author some degree of control over the compromised operating system and are generally employed in sending spam e-mail and may be rented out to perform DDoS attacks.
  • Data exfiltrators, which collect and transmit data about the computer they reside on back to the creator. These are commonly used to target login and account details for financial, social networking, and gaming websites.
  • Rogue Utility Applications, which attempt to use scare tactics in order to entice the computer's user to purchase the "full version" of the Rogue Utility.
  • Adware, which causes advertisements to appear on the user's desktop, in webpages, or elsewhere.
  • Rootkits, which attempt to conceal the presence of both the root kit and (usually) an accompanying piece of malware from another category from standard system tools and diagnostic utilities.
333 questions
2
votes
3 answers

Do we need both Eset and SuperAntiSpyware?

Our company had a bad virus experience several years ago. Probably as a result, every pc has Eset Nod & SuperAntiSpyware installed. I think this is excessive and that Eset should allow sufficient protection by itself. Is there any good reason to…
Rory
  • 597
  • 1
  • 6
  • 23
2
votes
1 answer

Detecting Torpig on a LAN

I am responsible for the oversight of the LAN at a college campus. Recently we started getting blacklisted by CBL because someone on our LAN is infected with Torpig (AKA Anserin). The suggestion from CBL includes monitoring connections to an IP…
IAmTimCorey
  • 203
  • 3
  • 12
2
votes
2 answers

Symantec Endpoint Protection Virus Definitions

I have done some Googling but I cannot get a definitive answer certainly not from the Symantec KB. I have a Virtualised Win 2003R2 server 32bit. It has been provisioned to me with Symantec Endpoint Protection 11.0.62xxx CLIENT (not a definitions…
2
votes
3 answers

Avoiding viruses 101

I'm looking to send out an email to my users to give them advice on avoiding getting viruses and phishing emails. I've found http://www.sonicwall.com/furl/phishing/ which is a bit dated and is primarily for phishing but still applies a bit for…
PHLiGHT
  • 1,041
  • 11
  • 25
2
votes
4 answers

Virus blocking incoming connections?

On my Windows Server 2003 server, all incoming connections are dropped. I can see them getting in using Wireshark, but even a single ping from another computer fails. All locally initiated connection work fine (I'm asking from the server). This…
Benoît
  • 1,341
  • 3
  • 11
  • 23
2
votes
3 answers

Force Apache2.2 to drop a request

Long story short we recently had an account on one of a shared hosts compromised, the issue has been resolved but the affected account is still being spammed with over a million requests a day to a specific file. Since the compromising file is gone…
xzyfer
  • 323
  • 1
  • 5
  • 12
2
votes
3 answers

What would you do when a worm infects everything?

Ive always wondered, what can we do if a virus or worm happens to affect the main file server? What if from the file server the clients get infected by said worm/virus? How would you clean it up? Where would you even start in a compromised…
Jared
  • 295
  • 2
  • 10
2
votes
3 answers

how i can write test virus?

i have a website and in website some people can upload files .... and when user upload file it must scan from virus by antivirus ... so i need test virus have the following extention (.doc ,jpg, png, jpeg, gif, doc, docx, pdf, xls, xlsx ) to sure…
Mohammad AL-Rawabdeh
  • 1,612
  • 12
  • 33
  • 54
2
votes
5 answers

Opinion question about security viruses and HTML attachments

In the last couple of weeks my company has been inundated by a group of viruses including an .html attachment. Some of these were subjected UPS shipment, some Western Union. All of them asking the user to click on the .html attachment. Mind you,…
Albion
  • 465
  • 2
  • 6
  • 16
2
votes
1 answer

Find the source of malware?

I have a server that was running an older version of lighttpd (1.4.19 on a freebsd 6.2-RELEASE (yea, old) machine) and google alerted me that it had found malware embedded on one of my server's pages. It just so happened to be our index page. I…
jps
  • 123
  • 4
2
votes
6 answers

Malware vs Viruses

Is there a legitimate technical difference between malware and viruses? I have looked at the Wikipedia entries but I am not really seeing the difference. Currently, I kind of feel like this is just Symantec's way of getting more money for products…
Kyle Brandt
  • 83,619
  • 74
  • 305
  • 448
2
votes
5 answers

Virus sending phishing emails through exchange server

It appears that there is a virus on my network somewhere that is sending phishing emails through my exchange server. I can see the messages in message tracking and I see many SMTP errors for NDR's and rejected connections from external servers, but…
therulebookman
  • 340
  • 2
  • 4
  • 9
2
votes
4 answers

Website attacked with a hidden iframe (q5x.ru)

A website of mine has recently been infected with some sort of attack that involved injecting a hidden iframe, and it's source was from a site q5x.ru (do not link). A Google search didn't help me in figuring out how this attack my have took place,…
Andreas Grech
  • 195
  • 1
  • 1
  • 7
2
votes
6 answers

What's the common cause for trojan downloaders on linux servers?

On several of the webservers i'm responsible for there's a javascript virus, a trojan downloader according to the antivirus i'm using. It's a minified javascript that's on the bottom of every page requested from the server. I don't know what the…
2
votes
3 answers

Rebuild or repair?

Possible Duplicate: Updating Malware cleaning skills I was having an argument the other day regarding damaged systems. If a system has a hard to eradicate virus, etc, or has been damaged by a software install, etc, do you advocate rebuilding the…
Robot
  • 337
  • 1
  • 3
  • 8