iratheous' forum posts

Avatar image for iratheous
iratheous

60

Forum Posts

0

Wiki Points

1

Followers

Reviews: 2

User Lists: 0

#1 iratheous
Member since 2004 • 60 Posts
I read a news article about this virus the other day, it's supposed to steal lineage and WoW passwords.
Avatar image for iratheous
iratheous

60

Forum Posts

0

Wiki Points

1

Followers

Reviews: 2

User Lists: 0

#2 iratheous
Member since 2004 • 60 Posts
http://www.gamespot.com/pc/rpg/silverfall/index.html?tag=similargames;title;2 Gives: Virus Profile: Exploit-ANIfile.c Risk Assessment - Home Users: Low - Corporate Users: Low Date Discovered: 3/28/2007 Date Added: 3/28/2007 Origin: N/A Length: varies Type: Trojan SubType: Exploit DAT Required: 4995 Virus Characteristics This detection covers ANI files that attempt to exploit a recent ANI file format handling vulnerability. AVERT has confirmed that the exploit affects at least systems running Microsoft Internet Explorer 6 & 7 on Windows XP SP2. Systems running Windows XP SP1 and Windows XP SP0 do not seem vulnerable to this exploit. These malicious ANI files may be hosted by websites, which when visited can result in silent execution of arbitrary code. One such sample silently downloaded a new downloader trojan, Downloader-BBH. Indications of Infection This exploit runs silently without showing any obvious symptoms. This exploit is simply a transport mechanism for other malicious code; whatever the attack chooses to include. Method of Infection Malicious code can be delivered via a web page or email message. Removal Instructions AVERT recommends to always use latest DATs and engine. This threat will be cleaned if you have this combination. Additional Windows ME/XP removal considerations Aliases TROJ_ANICMOO.AX (Trend Micro)