Intraday malicious virus program: Trojan.PSW.Win32.DNF.dpb
Behavior:
This is a malicious Trojan virus program which spreads bundled with plugin of online game software.
After computer users launching plugin program of online game, this malicious Trojan virus program shall be executed automatically. Then, the virus program shall forcedly shut down protection which is loaded by antivirus software to Windows system files and; replace the system files which concerned with the online game program into virus files. So, while computer user launching the online game, the Trojan virus shall record and steal the online game account; without any detection from antivirus which is installed on local infected device. Finally, the virus program shall send the stolen online game account information out to the server which is specified by hackers. So, this malicious Trojan virus program threatens online game player account security seriously.
Statistics:
RISING Cloud Security reported:
March 30th, 2011 Rising Cloud Security detected that there were 683,025 computers got attacks from malicious URL injection and, RISING has intercepted 23,486 malicious URLs successfully. Meanwhile, 58,146 suspicious URLs were submitted from Rising Cloud Security members.
Top5 Infected Website:
1, esf.gy.soufun.com/newsecond/sale_info **
Injected malicious URL: ** com/1.html
2, hexun.com/linktech**
Injected malicious URL: ** .org:171/win7/boom.html?id=113
3, www.e-jjj.com/case/Case_Detail**
Injected malicious URL: **info/ew/sgsj.html
4, www.cxkx.gov.cn/editor/css/mm**
Injected malicious URL: ** cn/editor/css/mm/wmqqxy.html
5, www.jtdj.gov.cn/dwgk/newscontent**
Injected malicious URL: ** net/22/6.htm
Notice: the symbol ‘*’ means a stochastic letter or number.
Solutions:
1. Install Rising Internet Security, or Rising Antivirus plus Rising Firewall, and get update in time.
2. Install Rising PC Doctor, and choose “Leaks” function to check the leaks or vulnerabilities exist on your computer operating system, patch your computer system in a timely manner because many viruses spread by taking advantage of Windows operating system vulnerabilities.
3. Do not browse suspicious websites, and do not run suspicious plugins; turn off or delete unnecessary system services.
4. Do not receive the suspicious file from QQ, MSN, Email, etc.
5. Open RISING Active Defense and Auto-Protect function while accessing to Internet.
*You can buy RISING Security products here or free download to try.
*If you have any questions about RISING products, please visit Rising support centre for help.