The goal of this project is to make virtual world a safer and better place without child pornography, major computer crime and RIAA.
Login As
You can log in if you are registered at one of these services:
Security Bulletins
Latest Malware Updates

Infostealer.Posteal

02/26/2015

Downloader.Busadom

02/26/2015

Trojan.Ladocosm

02/26/2015

SONAR.SuspDocRun

02/25/2015

SONAR.SuspHelpRun

02/25/2015
02/06/2015

Backdoor.Mivast

Type:  Trojan
Discovered:  06.02.2015
Updated:  06.02.2015
Affected systems:  Windows 2000, Windows 7, Windows NT, Windows Server 2003, Windows Server 2008, Windows Vista, Windows XP
AV Vendor:  Symantec

Description:

The Trojan arrives on the compromised computer as a dropper that disguises itself as another application.

When the Trojan is executed, it creates the following files:
  • %Temp%\Center[RANDOM NUMBERS].dat
  • %Temp%\msi.dll
  • %Temp%\s.exe
  • %Temp%\setup.msi
  • %Temp%\MicroMedia
  • %Temp%\MicroMedia\MediaCenter.exe

The Trojan creates the following registry entry:
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Micromedia

The Trojan may inject a thread in the following location to open a back door:
  • svchost.exe

The Trojan may open a back door, and connect to one of the following locations:
  • sharepoint-vaeit.com:80
  • extcitrix.we11point.com:80
  • sb-ssl.google.com:80
  • 192.199.254.126/view.asp?[PARAMETERS]
  • 192.199.254.126/photo/[STRING].jpg?[PARAMETERS]

The Trojan may perform the following actions:
  • Open a remote shell
  • Run basic commands
  • Download and execute .exe files
  • Remove itself from the autorun key
  • Read and send data from files
  • Gather NTLM password information

Security Advisories Database

Remote Code Execution Vulnerability in Microsoft OpenType Font Driver

A remote attacker can execute arbitrary code on the target system.

07/21/2015

SQL Injection Vulnerability in Piwigo

SQL inection vulnerability has been discovered in Piwigo.

02/05/2015

Cross-site Scripting Vulnerability in DotNetNuke

A cross-site scripting (XSS) vulnerability has been discovered in DotNetNuke.

02/05/2015

Cross-site Scripting Vulnerability in Hitachi Command Suite

A cross-site scripting vulnerability was found in Hitachi Command Suite.

02/02/2015

Denial of service vulnerability in FreeBSD SCTP RE_CONFIG Chunk Handling

An attacker can perform a denial of service attack.

01/30/2015

Denial of service vulnerability in Apache Traffic Server HTTP TRACE Max-Forwards

An attacker can perform a denial of service attack.

01/30/2015

Denial of service vulnerability in MalwareBytes Anti-Exploit "mbae.sys"

An attacker can perform a denial of service attack.

01/30/2015

Denial of service vulnerability in Linux Kernel splice

An attacker can perform a denial of service attack.

01/29/2015

Denial of service vulnerability in Python Pillow Module PNG Text Chunks Decompression

An attacker can perform a denial of service attack.

01/20/2015