Exploit kit with integrated AV checker
Posted on 01.12.2010
The latest version of the relatively new "Siberia Exploits Kit" has an interesting feature that must make it pretty popular among criminals - a built in AV checker:


With it, one can check which malware and exploit pages will get detected by which particular AV solution. Of course, the malware samples aren't uploaded Virus Total or a similar legitimate file checking service, since they forward them to the companies that manufacture those AV solutions.

M86 Security's experts looked into the code and discovered that the samples are uploaded to "scan4you.biz", an underground malware testing site that charges 0.15¢ for every file checked (or $25 for a one month license):








Spotlight

Unpatched, vulnerable PDF readers leave users open to attack

Unpatched, vulnerable PDF readers are a big security issue for private PC users. 14% of PC users in the US have an unpatched operating system, and that Oracle Java yet again tops the list of applications exposing PCs to security risks.


Weekly newsletter

Reading our newsletter every Monday will keep you up-to-date with security news.
  



Daily digest

Receive a daily digest of the latest security news.
  
DON'T
MISS

Fri, May 1st
    COPYRIGHT 1998-2015 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //