20 Aug
W32.Induc.A!pas is a method to identify an infected Pascal (Delphi) source file, which is infected and temporarily created by W32.Induc.A.
20 Aug
W32.Induc.A!dcu is a heuristic detection for an infected Delphi library file that was compiled with an infected Delphi compiler compromised by W32.Induc.A.
20 Aug
Mal/Induc-C is a detectiion for a virus that infects Delphi files while being compiled that may prevent antivirus program to clean it. Mal/Induc-C searches computers for installations of Delphi and tries to modify SysConst.pas and hence infect SysConst.dcu with W32/Induc-A.
20 Aug
Mal/Induc-A is a detection for a malicious SysConst.dcu file that has been infected with W32/Induc-A such that new Delphi files compiled using this SysConst.dcu are infected with W32/Induc-A.
20 Aug
W32/Induc-A is a virus that will infect Delphi file at compilation process. With this method, the infected files cannot be cleaned and need to recompile again with an uncompromised version of Delphi. W32/Induc-A will look for installations of Delphi, then tries to temporarily modify SysConst.pas, and compiles this to infect SysConst.dcu. The original SysConst.dcu can [...]
20 Aug
W32/Induc is a detection for a virus that will add its malicious code in to the Delphi library file and at the same time injecting itself to the compilation process. Any files compile with compromised Delphi compiler will also be infected with W32/Induc.
W32.Induc.A also know as Win32.Induc.a is a virus that may inject its code to Delphi compilation procedure and infect all files that were compiled with it. W32.Induc.A does it by placing an infection routine on the file [DELPHI INSTALLATION FOLDER]\source\rtl\sys\SysConsts.dcu. With this new method, all files compiled with the compromised Borland Delphi will have an embedded malicious [...]
18 Aug
Bloodhound.Exploit.267 is a usual detection method to identify malicious files attempting to exploit the Microsoft Remote Desktop Connection ActiveX Control Heap Based Buffer Overflow Vulnerability (BID 35973). Files detected as Bloodhound.Exploit.267 may be malicious and poses high risk on computer and its network environment.
17 Aug
Mal/FakeAvJs-A is a generic detection for a malicious JavaScript file usually located on the server of the webpage that disguises as an online antivirus scanner. Mal/FakeAvJs-A can download and install a copy of rogue security application on visitors computer through this script. Upon infection, this virus can also download additional malware and performs its other [...]
15 Aug
Troj/Rootkit-GL is a detection for files that were encrypted to hide its presence on the system. Troj/Rootkit-GL will inject itself on legitimate Windows system files so that only the instance of the system files will be seen, Troj/Rootkit-GL will be invisible to antivirus programs.