27 Aug
W32.Nitomeivo is a virus that arrives as an executable file via scam email messages. When W32.Nitomeivo is executed, it will infect other executable files in the form of .exe and .scr. This virus will also overwrite system files on the infected computer.
If virus W32.Nitomeivo found the computers date is June 6 or December 12, it overwrites [...]
27 Aug
W32/RenWish is a detection for a malicious Macromedia Flash file that will execute a JavaScript when played. W32/RenWish pretend to be a “Wish You Were Here” multimedia file by PinkFloyd. When executed, this run a JavaScript file detected as JS/RenWish.
27 Aug
JS/RenWish is a detection for a JavaScript file that will run when a malicious Macromedia Flash file. This file was detected as W32/Renwish. JS/RenWish is propagated via Renren.com, a Chinese social networking website.
25 Aug
VBS.Runauto.G is a worm that can provide a remote attacker an unauthorized access on infected computer by establishing a backdoor ports. VBS.Runauto.G spreads through removable drives and unsecured network shares.
24 Aug
JS.Frienren is a worm that propagates by sending a scam messages with malicious link to contacts of Renren social networking Web site. JS.Frienren will search the infected computer for cookies that are related to the said social network.
Detection Virus.Win32.Induc.a spreads by infecting the systems running the Delphi development environment. When the Detection Virus.Win32.Induc.a code is executed it will first check if Delphi (version 4 through 7) is installed on the computer via registry entries, If found, it will get the Delphi installation folder from the same registry key and
copy %Delphi_Installation_Folder%SourceRtlSysSysConst.pas to %Delphi_Installation_Folder%LibSysConst.pas and [...]
22 Aug
W32.Induc.A!dr is a generic detection for a malicious programs that will install applications used to compiled with a Delphi that was compromised with a W32.Induc.A.
21 Aug
ACM_UNEXPLODE.C is a malicious AutoCad Macro file that uses the command NET USER to add an administrator account using the name SERVICER. It also uses the command NET SHARE to share drives C to I. ACM_UNEXPLODE.C can get into computer when by other malware or arrive bundled with malware packages as a malware component.
20 Aug
W32.Induc.A!pas is a method to identify an infected Pascal (Delphi) source file, which is infected and temporarily created by W32.Induc.A.
20 Aug
W32.Induc.A!dcu is a heuristic detection for an infected Delphi library file that was compiled with an infected Delphi compiler compromised by W32.Induc.A.