• Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg
  • Delicious

Anti-Malware Laboratory

Yet Another Malware Blog

About

An informal blog from your friendly neighborhood software security humans.

Blog Archive

  • ▼  2015 (5)
    • ▼  October (1)
      • Another Macro Script Technique in Executing Malware
    • ►  August (2)
    • ►  May (1)
    • ►  March (1)
  • ►  2014 (8)
    • ►  October (1)
    • ►  July (1)
    • ►  June (1)
    • ►  May (4)
    • ►  April (1)
  • ►  2013 (12)
    • ►  December (3)
    • ►  November (5)
    • ►  August (2)
    • ►  March (2)
  • ►  2012 (35)
    • ►  April (4)
    • ►  March (12)
    • ►  February (17)
    • ►  January (2)

Categories

adobe (1) android (10) android february (1) baksmali (1) Black Hole (2) crimepack (1) disassembler (1) exploit (3) Exploits (4) Fakeav Winrar sfx (1) Fishbowl (1) flash (1) gift certificates (1) Google Authenticator (1) google play (1) hcp (1) java (1) Malware (5) mdac (1) Mobile (24) NSA Mobility Program (1) obfuscated script (1) pdf (1) Reversing (2) rhino (1) skype (1) smali (1) spam (1) test (1) Unpacking (1) vouchers (1) vulnerability (3)

Popular Posts

  • Bank of America spam: An Analysis
    An email claiming to be from Bank of America lures users to open an attachment that shows how to open secure emails from the bank. The mess...
  • [BE CAUTIOUS] Dragon Ball Z: Resurrection of F MALWARE and SCAM
    Be wary of downloading movies in torrent sites.  Executables can also be executed with a file size as huge as a gigabyte...
  • Unpacking MFC Compiled CryptoWall Malware
    Unpacking MFC Compiled CryptoWall Malware Introduction First and foremost, this article does not intend to analyze what CryptoWall malw...

Visitors to this blog

Showing posts with label android. Show all posts
Showing posts with label android. Show all posts

Wednesday, April 4, 2012

Fake Google Play

Posted on Wednesday, April 04, 2012 by Red Horse | No comments
Originally posted by elmo.

This fake google play site serves a malicious file called, google_play.apk which tricks russian users into thinking that they are the legitimate site.
Read More

Google Authenticator updated

Posted on Wednesday, April 04, 2012 by Red Horse | No comments
Originally posted by elmo.

Google recently updated Google Authenticator to version 2.15.

What's in this version:
1. New entry for Google Play, same great app
2. Updated look and feel
3. "Scan barcode" and "Manually add account" options moved to Menu > Add account.

When your phone is not connected to any network, Google Authenticator can be used to generate a valid verification code.

The verification code generated is then used in Google's 2-step verification process when signing in from a new device or phone.

Please visit this site for more info.

[gallery]
Read More

Thursday, March 22, 2012

NSA Mobility Program

Posted on Thursday, March 22, 2012 by Red Horse | No comments
Originally posted by elmo.

The NSA or National Security Agency recently established the NSA Mobility Program to focus on delivering secure mobile capability using commercial technologies to the United States Government (USG) and Department of Defense (DOD).

They have also identified 5 major categories of the mobile ecosystem in a document called Mobility Capability Package:
1. Secure Voice
2. OS/Apps & Mobile Device
3. Mobile Transport (Carrier)
4. Mobile Enterprise Infrastructure
5. Interoperability

You may visit this site for more info.
Read More

Thursday, March 8, 2012

AV-TEST Report on Android Anti-Malware Solutions

Posted on Thursday, March 08, 2012 by Red Horse | No comments
Originally posted by elmo.

AV-Test an independent IT security company recently published a test report on different anti-malware product available for android.

It is worth noting that they have tested 41 anti-malware products!

Too many in such a short period and some of the solutions have 0% detections.

So choose wisely and pick an anti-malware product in the top half.
Read More

Thursday, March 1, 2012

Baksmali

Posted on Thursday, March 01, 2012 by Red Horse | No comments
Originally posted by elmo.
Baksmali means disassembler in Icelandic language and it is used to dissassemble a dex file.

Prerequisite:
JDK (java development kit) needs to be installed in your system.

Download:
baksmali-x.x.x.jar

Syntax:
1. go to the folder where you downloaded baksmali
2. open a command prompt
3. type and execute "java -jar baksmali-x.x.x.jar <location of dex file>"
e.g. d:\tools>java -jar baksmali-1.3.2.jar d:\test\classes.dex
4. the dissassembled file is located in the "out" folder located in the baksmali directory
Read More

Wednesday, February 29, 2012

Android Malware February 2012 Roundup

Posted on Wednesday, February 29, 2012 by Red Horse | No comments
Originally posted by elmo.

Date
Name
Feb 03, 2012 RootSmart
Feb 06, 2012 FakeRun
Feb 13, 2012 PushBot
Feb 14, 2012 FakeClick
Feb 15, 2012 Gappusin
Feb 17, 2012 Loicdos
Feb 20, 2012 LeadBolt
Feb 23, 2012 Fakeapp
Feb 23, 2012 Opfake.B
Feb 25, 2012 FakeAngry
Feb 25, 2012 Moghava
Read More

Friday, February 17, 2012

FakeTimer

Posted on Friday, February 17, 2012 by Red Horse | No comments
Originally posted by elmo.
[gallery link="file" order="DESC"]
Read More

RootSmart

Posted on Friday, February 17, 2012 by Red Horse | No comments
Originally posted by elmo.
[gallery link="file" order="DESC"]
Read More

Thursday, February 9, 2012

Android History

Posted on Thursday, February 09, 2012 by Red Horse | No comments
Originally posted by elmo.
A compressed android history.



Source:
Wikipedia
Read More

Tuesday, January 3, 2012

Tapsnake

Posted on Tuesday, January 03, 2012 by Red Horse | No comments
Originally posted by elmo.

[gallery]

virustotal
Read More
Home
Subscribe to: Posts (Atom)
volute-glacial
volute-glacial
volute-glacial
volute-glacial
Copyright © Anti-Malware Laboratory | Powered by Blogger
Design by Fabthemes | Blogger Template by NewBloggerThemes.com