Wednesday 11. April 2012

Top Computer Threats in Thailand of March 2012

     
  • JS/Kryptik.BP – 8.13%: Trojan has the capabilities to remote access connection handling, perform Denial of Service (DoS) or Distributed DoS (DDoS), capture keyboard inputs, delete file or object, or terminate process.
  •  
  • Defo – 7.71%: Typical memory usages were like the top 4 kb of the 640 Kb conventional memories. Inserting a non infected diskette in the floppy drive would result in the virus writing itself to the boot sector of the floppy diskette.
  •  
  • HTML/ScrInject.B.Gen – 2.82%: Generic detection of HTML web pages containing script obfuscated or Iframe tags that that automatically redirect to the malware download.
  •  
  • INF/Autorun.gen – 2.51%: A detection for 'autorun.inf' files that may be used by worms when spreading to local, network, or removable drives. When copying themselves to a drive, these worms also create a file named 'autorun.inf' in the root of the targeted drive. The 'autorun.inf' file contains execution instructions for the operating system which are invoked when the drive is viewed using Windows Explorer, thus executing the copy of the worm.
  •  
  • Win32/Sality.NBA – 2.22%: A polymorphic file infector. The virus searches local and network drives for files with one of the following extensions: .exe Files are infected by adding a new section that contains the virus. The host file is modified in a way that causes the virus to be executed prior to running the original code. It could disable certain system processes, lowering the computer's security, terminating security-related processes and services, and disabling monitoring software and System Restore.
  •  
  • HTML/Iframe.B.Gen – 2.12%: Generic detection of malicious IFRAME tags embedded in HTML pages, which redirect the browser to a specific URL location with malicious software
  •  
  • JS/Iframe.CD - 1.82%: A Trojan that redirects the browser to a specific URL location with malicious software. The program code of the malware is usually embedded in HTML pages.
  •  
  • INF/Autorun – 1.73%: This detection label is used to describe a variety of malware using the file autorun.inf as a way of compromising a PC. This file contains information on programs meant to run automatically when removable media (often USB flash drives and similar devices) are accessed by a Windows PC user. ESET security software heuristically identifies malware that installs or modifies autorun.inf files as INF/Autorun unless it is identified as a member of a specific malware family.
  •  
  • HTML/Fraud.BG – 1.61%: A Trojan that steals sensitive information. The trojan attempts to send gathered information to a remote machine. The trojan displays a dialog window asking the user to take part in a short survey and persuade the user to fill in personal information.
  •  
  • INF/Autorun.Sz – 1.32%: This detection label is used to describe a variety of malware using the file autorun.inf as a way of compromising a PC. This file contains information on programs meant to run automatically when removable media (often USB flash drives and similar devices) are accessed by a Windows PC user. ESET security software heuristically identifies malware that installs or modifies autorun.inf files as INF/Autorun unless it is identified as a member of a specific malware family.
  •