<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; tibs-jy</title>
	<atom:link href="http://www.darknet.org.uk/tag/tibs-jy/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Malware Outbreak During New Year &#8211; Dref-V and Trojan downloader Tibs-jy</title>
		<link>http://www.darknet.org.uk/2007/01/malware-outbreak-during-new-year-dref-v-and-trojan-downloader-tibs-jy/</link>
		<comments>http://www.darknet.org.uk/2007/01/malware-outbreak-during-new-year-dref-v-and-trojan-downloader-tibs-jy/#comments</comments>
		<pubDate>Wed, 03 Jan 2007 09:54:32 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[dref-v]]></category>
		<category><![CDATA[infection]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[tibs-jy]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[trojan-downloader]]></category>
		<category><![CDATA[virus]]></category>
		<category><![CDATA[viruses]]></category>
		<category><![CDATA[worm]]></category>
		<category><![CDATA[worms]]></category>
		<category><![CDATA[wumark-d]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2007/01/malware-outbreak-during-new-year-dref-v-and-trojan-downloader-tibs-jy/</guid>
		<description><![CDATA[Social Engineering again, someone praying on xmas spirit and good will to spread their filthy malware. It quite often happens during festive times, someone hatches a new worm and sends it out packaged as a jolly xmas card or game. A significant worm outbreak over the new year festivities has put paid to the notion [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>Social Engineering again, someone praying on xmas spirit and good will to spread their filthy malware.</p>
<p>It quite often happens during festive times, someone hatches a new worm and sends it out packaged as a jolly xmas card or game.</p>
<blockquote><p>A significant worm outbreak over the new year festivities has put paid to the notion we&#8217;ve seen the end of mass mailing worms just yet.</p>
<p>The Luder email worm (AKA <a href="http://www.sophos.com/virusinfo/analyses/w32drefv.html">Dref-V</a> and Trojan downloader Tibs-jy, first seen on 30 December, poses as an electronic postcard and clogged up email in-boxes over the last two days after successfully duping the gullible into opening executable email attachments with names such as postcard and Greeting Card.exe. Subject lines such &#8220;Happy New Year!&#8221;, &#8220;Fun Filled New Year!&#8221; and &#8220;Happy 2007!&#8221; have been enough to convince the unwary that the messages were electronic greetings celebrating the new year rather than malware.</p></blockquote>
<p>This time it&#8217;s about new year, but same old story packaged as a greeting card with rotated subject lines and various executable names.</p>
<p>Same concept as usual.</p>
<blockquote><p>It&#8217;s far from the first instance of malware authors attempting to exploit seasonally dulled senses in a bid to spread malware. Two years ago a worm called Wumark-D spread across the net, net security firm Sophos notes. The attachment of infected emails launched a graphic image of nude men and women contorting to form the words &#8220;HAPPY NEW YEAR&#8221; whilst silently downloading malicious code onto compromised machines, which became agents in spreading the infection.</p></blockquote>
<p>Once again a message for people to be vigilant, especially when receiving executables from anyone (even someone you know) unless you are expecting it.</p>
<p>Just drop a note back and ask did they mean to send it to you.</p>
<p></p>
<p>Source: <a href="http://www.theregister.co.uk/2007/01/02/new_year_malware/">The Register</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Malware+Outbreak+During+New+Year+%E2%80%93+Dref-V+and+Trojan+downloader+Tibs-jy+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D446+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2007/01/malware-outbreak-during-new-year-dref-v-and-trojan-downloader-tibs-jy/&amp;t=Malware+Outbreak+During+New+Year+%E2%80%93+Dref-V+and+Trojan+downloader+Tibs-jy" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2007/01/malware-outbreak-during-new-year-dref-v-and-trojan-downloader-tibs-jy/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2007/01/malware-outbreak-during-new-year-dref-v-and-trojan-downloader-tibs-jy/&amp;title=Malware+Outbreak+During+New+Year+%E2%80%93+Dref-V+and+Trojan+downloader+Tibs-jy" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2007/01/malware-outbreak-during-new-year-dref-v-and-trojan-downloader-tibs-jy/&amp;title=Malware+Outbreak+During+New+Year+%E2%80%93+Dref-V+and+Trojan+downloader+Tibs-jy" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2007/01/malware-outbreak-during-new-year-dref-v-and-trojan-downloader-tibs-jy/&amp;title=Malware+Outbreak+During+New+Year+%E2%80%93+Dref-V+and+Trojan+downloader+Tibs-jy" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2007/01/malware-outbreak-during-new-year-dref-v-and-trojan-downloader-tibs-jy/&amp;title=Malware+Outbreak+During+New+Year+%E2%80%93+Dref-V+and+Trojan+downloader+Tibs-jy" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2007%2F01%2Fmalware-outbreak-during-new-year-dref-v-and-trojan-downloader-tibs-jy%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2007/01/malware-outbreak-during-new-year-dref-v-and-trojan-downloader-tibs-jy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

