malware

SecuritySophos

Klickbetrug mit Gewinnoptimierung: Android-Apps tarnen sich als iPhone-Programme

Credit to Author: Jörg Schindler| Date: Fri, 07 Dec 2018 08:43:41 +0000

Profitsteigerung ist eine der Maximen jedes Cyberkriminellen. Da wundert es nicht, dass die SophosLabs nun eine neue Machenschaft aufgedeckt haben, die auf der Tatsache beruht, dass Werbetreibende mehr Geld pro Klick zahlen, wenn dieser von vermeintlich wohlhabenderen iPhone- oder iPad-Besitzern kommt. Da der sogenannte Klickbetrug, bei dem kommerzielle Werbeflächen geklickt oder Klicks zur Manipulation der [&#8230;]<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/Rj2Gjs0RSbQ” height=”1″ width=”1″ alt=””/>

Read More
QuickHealSecurity

FakeApp discovered on Google Play Store which increases download count and rating of other applications.

Credit to Author: Rupali Parate| Date: Fri, 21 Dec 2018 07:16:46 +0000

Quick Heal Security Lab has spotted few FakeApps with more than 50,000+ installations on Google Play Store. These applications appear to be genuine as a PDF reader, PDF Downloader, PDF Scanner etc., but don’t have such functionality. The main purpose of these apps is to increase the download count of…

Read More
QuickHealSecurity

GandCrab says, “We will become back very soon! ;)”

Credit to Author: Anant Pulgam| Date: Tue, 18 Dec 2018 12:44:21 +0000

GandCrab has been in the wild since last week of January 2018. Over the period it kept learning from its mistakes and GandCrab’s agile development grabbed the attention of many security researchers. From moving its servers to Namecoin powered Top Level Domain (.BIT TLD) servers after the first breach, then learning from…

Read More
QuickHealSecurity

Ghost Has Arrived

Credit to Author: Ghanshyam More| Date: Fri, 14 Dec 2018 11:58:50 +0000

On the back of an upswing in Ransomware activity, we decided to carry out an in-depth analysis of Ghost Ransomware. Interesting fact about this malware is that it uses multiple components to encrypt user files. Technical Analysis : Main malware executable (Ghost.exe) is compiled using the DotNet Framework. The infection…

Read More
QuickHealSecurity

Sophisticated Ransomware : “Katyusha”

Credit to Author: Ghanshyam More| Date: Fri, 14 Dec 2018 10:59:58 +0000

For several months, Quick Heal Security Labs has been observing an increase in ransomware, we have found one more interesting ransomware which encrypts files and adds extension “.katyusha” and demands for an amount of 0.5 btc within three days and threatens to release the data to public download if the ransom is not…

Read More
SecuritySophos

Técnicas cibercriminales – Informe de amenazas SophosLabs 2019

Credit to Author: Naked Security| Date: Tue, 27 Nov 2018 16:01:56 +0000

Los cibercriminales están teniendo éxito en evadir la detección en ordenadores Windows abusando de herramientas de administración legítimas que se encuentran frecuentemente en ese sistema operativo. Este es uno de los puntos fundamentales del Informe de Amenazas SophosLabs 2019, que explica cómo esta técnica pasó de ser poco utilizada a una de las más populares [&#8230;]<img src=”http://feeds.feedburner.com/~r/sophos/dgdY/~4/JEBe1BPE9-I” height=”1″ width=”1″ alt=””/>

Read More