English
The Internet threat alert status is currently normal. At present, no major epidemics or other serious incidents have been recorded by Kaspersky Lab’s monitoring service. Internet threat level: 1
Latest posting
By rating
By popularity

23 Apr Easter bunnies for all occasions Tatiana Kulikova

23 Apr An SMS Trojan with global ambitions Roman Unuchek

17 Apr New threat: Trojan-SMS.AndroidOS.Stealer.a Victor Chebyshev

16 Apr Would you like some Zeus with your coffee? Maria Vergelis

13 Apr SyScan 2014 Michael

09 Apr The omnipresent dad Maria Rubinstein

Join our blog

You can contribute to our blog if you have +100 points. Comment on articles and blogposts, and other users will rate your comments. You receive points for positive ratings.

AdWare crosses the line

Roel
Kaspersky Lab Expert
Posted December 16, 11:51  GMT
Tags: Adware
0
 

Malware has evolved a step further. AdWare has been compared to Trojan code for quite some time, but now we're seeing AdWare behaving like a file infector. This is something new.

A variant of the infamous CoolWebSearch family is infecting legitimate files in a way that when the infected file gets run, the AdWare file gets loaded too.

This means that you need to disinfect the legitimate file. If you delete the AdWare, but don't cure the file infection, this will cause problems.

It will be interesting to see how most Anti-Spyware programs will cope with this issue, as their engines aren't designed to disinfect executable files.


Comments

If you would like to comment on this article you must first
login


Bookmark and Share
Share

Analysis

Blog