newest nasty adware/spyware

Talk about anything and everything
Post Reply
DW_Wraith
DW Clan Member
Posts: 846
Joined: Sun Jan 08, 2006 12:00 am

http://theinquirer.net/default.aspx?article=34156

SECURITY OUTFIT Panda software says that a video codec which is appearing in the wild offering "up to 40 percent better video quality" is a nasty bit of adware.

zCodec is freely available online and can be downloaded from http://www.zcodec.com/. The site uses images from flicks Sin City and Pulp Fiction to claim boosts to audio as well as video quality.

It claims to be a multimedia compressor/decompressor which registers into the Windows collection of multimedia drivers and integrates with any application using DirectShow and Microsoft Video for Windows.

The only thing that suggests that there might be something wrong is a typo on the front page which links to its "terms of use" page. Still, you get that with the big jobs.

However, Panda said that the ‘codec’ downloads and runs files, changes the DNS configuration and monitors accesses to several adult websites.

It is known as adware/ZCodec or Adware/EMediacodec and affects most versions of Windows. Some of the files that the adware has been downloading are particularly nasty, including a rootkit called Ruins.MB, which does what it says on the tin.
Namu
1337 Haxor
Posts: 419
Joined: Tue Jan 03, 2006 12:00 am

Thanks for looking out for us Wraith!
Namu
kaeolian
1337 Haxor
Posts: 661
Joined: Thu Dec 29, 2005 12:00 am
Location: U.K.
Contact:

Good looking out. Its a shame there is stuff like this out there, its what will eventualy lead to the internet beingg moderated in its entirety.
Aih PittaH TeH F00l !!!1!11


Image
Gorzakk
1337 Haxor
Posts: 172
Joined: Mon Apr 03, 2006 11:00 pm

Thanks for the info Wraith. I hate this kind of crap. BTW, does anyone know of a good free firewall that can be used on a PC that has multiple login accounts? I hate this mcafee rubbish.
kaeolian
1337 Haxor
Posts: 661
Joined: Thu Dec 29, 2005 12:00 am
Location: U.K.
Contact:

http://www.clandw.com/modules.php?name= ... opic&t=491 have a look in there Gorz :drunken:
Aih PittaH TeH F00l !!!1!11


Image
DW_Wraith
DW Clan Member
Posts: 846
Joined: Sun Jan 08, 2006 12:00 am

I can't beleive a major company's website has a tojan that has been there for some time and probably is still there.

http://www.betanews.com/article/Samsung ... 1157743771

Samsung Web Site Infecting Visitors

Security firm Websense warned this week that attackers had apparently broke into the Web site of telecommunications company Samsung, infecting certain portions of the site with a Trojan horse. The firm said it was likely that the site had been infected for some time.

"The most current code, which is still available for download, is a Trojan Horse that attempts to disable anti-virus programs, modify registry keys, download additional files, and log keystrokes when connecting to banking websites," Websense said in an advisory.
DW_Hornet
DW Clan Member
Posts: 1125
Joined: Mon Mar 13, 2006 12:00 am

Ok who stole wraiths forum account?
DW_e_aLpHa
DW Clan Member
Posts: 733
Joined: Sun Apr 02, 2006 11:00 pm

NOTE: Not meaning it has to be for 'good' Neverminding that .. Is art! IMPOV

dont you love and admire the complexity of such cute tiny little pieces of programming ? -- I call it art! .. Because everyone of them reflects a big expense of deep thoughts , and ideas that make possibilities become the most real and usable instrument wich is then able to bring the results of the desire that originally created them - Deeply marvellous dont you agree ?..-- but people call it 'trojan' ..

NOTE: Not meaning it has to be for 'good' Neverminding that .. Is art! IMPOV
..:: Sworn to a Secrecy ::..
Image
==||+ Beast Of Blood +||==
Post Reply