« Koobface infected PCs world map
Are you part of the Koobface botnet? »

New Mac OS X Jahlav variant

August 6th, 2009

Yet another domain pushing a new MD5 of the Jahlav Trojan for Mac OS X.

fa1

tdenuwas.com/download/78384e3034413d3db727515620090801/QuickTimeUpdate.dmg

Actually several domains on the same IP (91.214.45.73) are hosting the malware:

allincorx.com

bigdron.com

cikaredo.com

civilizxx.com

comeandtryx.com

deribrowns.com

draxxtermania.com

givendream.com

hitrowzone.com

jumborad.com

ltdkeeper.com

operationelx.com

oxxadox.com

paxxtiger.com

rednetx.com

rstdeals.com

simplexdoom.com

sinisteer.com

tniredrum.com

ufapeace.com

Only 3 vendors on Virus Total are detecting this threat:

Kaspersky, F-Secure and Sophos.

vt1

Jerome Segura

Malware ID: 7424683a943171a92d2b281da41fec9e.zip

    This entry was posted on Thursday, August 6th, 2009 at 4:24 pm and is filed under Mac security. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

    Comments:

    1.      by
    • (0) comments
    • |
    • Add your comments




ParetoLogic, a Microsoft Certified Partner

 

RSS feed to this site Twitter Linkedin YouTube Channel

 

RSS feed to this site
Jerome Segura is a Security Analyst working at ParetoLogic.

You can contact him at:
MalwareDiaries Email

 

Pages

  • URL Clearing House
  • VB2009 pictures
  • Zheng™ Technology
  • About
  • Contact Us



Security Software

  • XoftSpySE Anti-Spyware
  • Anti-Virus PLUS
  • Privacy Controls



Malware Top 10

  • Koobface Worm
  • DNS Changer Trojan
  • Fake Alert Trojan
  • Windows System Suite
  • Smart Protector
  • Home Antivirus 2010
  • PC Antispyware 2010
  • System Security
  • AVCare
  • Perfect Defender 2009



Archives

  • February 2010
  • January 2010
  • December 2009
  • November 2009
  • October 2009
  • September 2009
  • August 2009
  • July 2009
  • June 2009
  • May 2009
  • April 2009
  • March 2009
  • February 2009
  • January 2009
  • December 2008
  • November 2008
  • October 2008
  • September 2008
  • August 2008
  • July 2008
  • June 2008
  • May 2008
  • April 2008
  • March 2008



Categories

  • Adware (1)
  • Banker Trojans (4)
  • Botnets (2)
  • Conferences (4)
  • DDos (1)
  • Exploits (43)
  • Fake codecs (34)
  • IM threats (1)
  • Interviews (5)
  • Keyloggers (1)
  • Mac security (15)
  • Malware Trends (69)
  • Phishing (8)
  • Podcast (1)
  • ransomware (3)
  • Research (40)
  • Rogue software (51)
  • Rootkits (2)
  • scams (5)
  • Social Networking (5)
  • Uncategorized (116)
  • Wireless Security (1)
  • world map (1)



 
 
 

© 2010 ParetoLogic Inc.