About Us Company ProfileHardware & Software ProductsSoftware & IT ServicesTechnical SupportContact Us
  infoarch : alert : archive 2004 (Jul - Dec)  
 

 

Virus : 2004-Dec-24

In South East Asia and Oceania, a trojan horse virus is quietly and slowly spreading among Symbian-based smart phones.

The Trojan is included in a file named "Metal Gear.sis". It poses as a freeware version of the fight game "Metal Gear Solid," but once activated, it disables antivirus programs and installs a version of the Cabir worm, then attempts to use the Bluetooth wireless protocol to spread a second Trojan, a file called "SEXXXY.sis", to other devices within short-distance wireless range.

Like Skull, the MetalGear Trojan uses the same icon-disabling technique to disable antivirus and other applications. Removal of the virus is difficult if the phone is rebooted.

 

System : 2004-Dec-14

Our systems recorded some strange power fluctuation in Johor Bahru around midnight these past weeks. The power instability could cause system to crash or even destroy low-grade power supply unit. You should install a good UPS and Surge Protector to prevent extensive damage to your hardware.

 

Virus : 2004-Nov-22

A malicious trojan called "Skulls" for phones based on Nokia's Series 60 smartphone platform can cause the infected phones to malfunction.

Disguised as shareware to manage installed theme, the program instead replaces all ROM-based application icons with an image of a skull and alters the icon links such that they no longer refer to actual applications. As a result, all functions which need some system application, such as SMS and MMS messaging, web browsing and camera are no longer accessible.

The Skulls SIS file is named "Extended theme.SIS", it claims to be theme manager for Nokia 7610 smart phone, written by "Tee-222"

If you have installed Skulls, the most important thing is not to reboot the phone.

 

Security : 2004-Nov-10

Microsoft had issued Security Bulletins MS04-039 that warned of a vulnerability in its ISA Server 2000 and Proxy Server.

Microsoft Security Bulletin Summary for November 2004

 

Security : 2004-Nov-5

A hacker group called SCC (Source Code Club) is offering the Cisco PIX 6.3.1 source code for USD24,000. The code is compiled to run the Cisco PIX firewalls, the most popular enterprise firewall in the world.

 

Security : 2004-Oct-14

Microsoft has issued new security patches to fix 21 flaws in its Windows family of operating systems and Internet Explorer. The software company rated seven of the flaws to be critical, you can download these patches at Microsoft's Windows Update site.

 

Virus : 2004-Sept-27

Jaring users should expect to encounter intermittent connection problems from now till September 29. Reasons unknown.

 

Virus : 2004-Sept-16

This is an update from our September 13 alert; many old variants of viruses have resurfaced in TMNet's network. We do not know if this is deliberate as TMNet is openning and closing many ports for tracking and testing purposes from now till September 17, but their email servers and network backbone will be flooded with virus emails and grind to a halt next week. If you are TMNet's user, please be prepared to expect more network problems in the next few weeks.

Do update your virus definition.

Download Symantec Antivirus Definition

 

Security : 2004-Sept-15

Can your computer get infected by a virus because you were looking at a graphical image? In 1994 a joke was circulating around the Internet making fun of it, but in the year 2004, it has become a reality.

Microsoft has released a patch to address a vulnerability in its imaging code that handles JPEG graphics format. Because the flaw exploit a shared function used by many Microsoft's products, the flaw affects almost all Microsft products, including Windows XP, Windows Server 2003, Office XP, Office 2003, Internet Explorer 6 Service Pack 1, Project, Publisher, Visio, Works, Picture It and Digital Image Pro.

https://www.microsoft.com/security/bulletins/200409_jpeg.mspx

 

Virus : 2004-Sept-13

For some reasons, the "Mydoom.L" and "NetSky.P" virus variants are replicating in TMNet's email accounts; if you are TMNet's users (if your email ends with @tm.net.my or @streamyx.com) you will receive at least one of these email viruses once every few hours. Although your system should be well protected as these are old variants, nevertheless it is always prudent to update your virus definition.

Download Symantec Antivirus Definition

 

Virus : 2004-August-13

Some mobile phone users were hit by a malicious program that they installed into their Symbian-based smart phones. The program is a game called "Mosquito", made by a company called Ojum. Ojum included self-check code into the program, which would dial a specified number owned by Ojum to report itself if it detected that it was cracked or being run on an unauthorized device.

The game did get pirated, so the pirated version began sending text messages to the premium number, resulting in hefty fees.

Affected mobile phone devices include:

Symbian OS UIQ Symbian OS Series 60 Symbian OS Series 80
Arima ASP805 Nokia 3650/3660 Nokia 9210 Comminucator
BenQ P30 Nokia 6260 Nokia 9210i Comminucator
BenQ P31 Nokia 6600/6620 Nokia 9500 Comminucator
Motorola A920 Nokia 6630  
Motorola A925 Nokia 7610 Symbian OS Fujitsu UI
Motorola A1000 Nokia 7650 Fujitsu F2051
Sony Ericsson P800 Nokia N-Gage QD Fujitsu F2102V
Sony Ericsson P900 Nokia N-Gage Fujitsu F900 series
  Panasonic X700  
  Samsung D710  
  Sendo X  
  Siemens SX1  

Removing this game will remove the virus.

 

Virus : 2004-August-10

A new virus variant of "Mydoom" is spreading rapidly. Known as "W32.Mydoom.P". It is a mass-mailing worm that uses its own SMTP engine to propogate.

Download Symantec Antivirus Definition

 

Virus : 2004-August-9

A new virus variant of "Bagle" is spreading rapidly. Known as "W32.Beagle.AO@mm", it is a mass-mailing worm that uses its own SMTP engine to propogate. Once infected, the victim's PC would made available a backdoor for the hacker to remotely take control of the system.

Download Symantec Antivirus Definition
"W32.Beagle.AO@mm" Virus Removal Tool

 

Security : 2004-Aug-2

The "download.ject" or "Scob" virus first surfaced around June 28th took advantage of a vulnerability in Internet Explorer, the virus attemps to steal confidential information, such as passwords and credit card numbers, and Microsoft had no way to protect against it, until now.

Microsoft has issued a special cumulative patch for its Internet Explorer browser, addressing three new security holes rated "critical." Microsoft urged all users to download the patch and apply it as soon as possible.

http://go.microsoft.com/fwlink/?LinkId=32567

 

Virus : 2004-July-26

A new virus variant of "Mydoom" is spreading rapidly. It is a mass-mailing worm that uses its own SMTP engine to propogate.

Download Symantec Antivirus Definition
"W32.Mydoom.M@mm" Virus Removal Tool

 

Security : 2004-July-8

Microsoft failed to properly patch the vulnerabilities exploited by the mysterious trojan first reported on June 28. This prompted the United States government to issue an unusual warning and urge users to consider a switch away from Microsoft's widely used Internet Explorer.

The latest round of highly sophisticated malicious software (malware) differ from the previous viruses and worms in that this time around, the malware were designed to deliberately spread slowly to avoid gaining attention.

If you use Internet Explorer for on-line banking, you should be absolutely sure that there are no trojans running in the background to steal your password. If your Internet Explorer has more than one toolbar, or you are redirected to strange sites everytime you start up Internet Explorer, you shouldn't be banking on-line with it.

 

Virus : 2004-July-5

A new virus called "Evaman" is spreading rapidly. It send itself to addresses found at the website email.people.yahoo.com. This worm arrives as an attachment with a .exe or .scr extension, and can infect Windows 95, 98, ME, 2000, XP, NT, and Windows Server 2003 machines.

Download Symantec Antivirus Definition

 

Security : 2004-June-28

A mysterious password-stealing trojans were spreading quietly over the weekend. It is thought that the attackers first compromised IIS server by adding malicious code to every web pages served by the server, visitors who were served those codes were then redirected to a Russian web site, which then send over the trojan program that would log the user's keyboard entry in a file, eventually to be uploaded to a Russian site.

In other word, it is a very sophisticated attack that exploits vulnerabilities in both the server (IIS) and the client (Internet Explorer). More attacks like these are expected in the near future.

 

 
Alert Archive

 


Latest alerts:

Current Alert

Older alerts are available here:

 
 
     

 

 

 

© Copyright 1999-2009, 2010 Infoarch Sdn. Bhd. All Rights Reserved
147A Jalan Perisai, Taman Sri Tebrau 80050. Johor Bahru, Johor, Malaysia.
Our Privacy Policy