Wednesday, March 12, 2008

Trendmicro Virus Infomation pages are Hacked(falsificated).

Trendmicro Virus information page was modified by hacker.
And they insert <iframe> tags to download malware.

JS_DLOADER.TZE is the malware which download from falsificated pages.
Anti virus vendor spread malware...really?!

Virus infomation on these are falsificated virus infomation pages.

Trendmicro US does not release News anything.
There is Japanese release News page(see google translated page Below )
http://translate.google.com/translate?u=http%3A%2F%2Fjp.trendmicro.com%2Fjp%2Fabout%2Fnotice%2F0312%2Findex.html&langpair=ja%7Cen&hl=ja&ie=UTF8

English virus infomation pages.

  • ADWARE_BHO_WEBDIR
  • ADWARE_BHO_WSTART
  • HKTL_MDBEXP.A
  • POSSIBLE_OTORUN3
  • SPYWARE_TRAK_RADMIN
  • TROJ_ARTIEF-1
  • TROJ_CLAGGER.D
  • TSPY_BANKER-2.002
  • TSPY_BANKRYPT.N
  • TSPY_GAMANIA.CI
  • TSPY_GOLDUN.GEN
  • TSPY_LINEAGE
  • TSPY_ONLINEG.DAU
  • TSPY_ONLINEG.OAX
  • TSPY_ONLINEG.OAX
  • TSPY_QQPASS
  • TSPY_SDBOT.BTI
  • W97M_DLOADER.BKV
  • WORM_IRCBOT.JK
  • WORM_NYXEM.E
  • WORM_SOBER.AG

Japanese virus infomation pages.

  • ADW_BRUNME.A
  • ADW_ZANGO.A
  • ADWARE_ADBLASTER
  • ADWARE_EXACTADVERTISING
  • ADWARE_EZULA.ILOOKUP
  • TSPY_AGENT.HS
  • TSPY_ANICMOO
  • TSPY_GOLDUN.GEN
  • TSPY_HUPIGON.ZY
  • TSPY_Lmir TSPY_Tiny

No comments: