Wilders Security Forums  

Go Back   Wilders Security Forums > Other Security Topics > malware problems & news
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old August 6th, 2010, 07:56 PM
CloneRanger's Avatar
CloneRanger CloneRanger is offline
Massive Poster
 
Join Date: Jan 2006
Location: Home usually
Posts: 3,846
Exclamation Trojanized .MOV Files

Cute

Quote:
Last week, we reported a new kind of attack that uses specially crafted .MOV files and a certain feature in QuickTime to trick users into downloading malware. The said attack raised some questions on how it was done and whether or not an exploit was used. To clear things up, here are the answers to some questions you may have in mind:

Where was this type of threat initially found?

Trend Micro encountered the QuickTime .MOV files from peer-to-peer (P2P) networks such as LimeWire and torrent portals.

What happens when the user opens the .MOV files using QuickTime? How about when using other media players?

*

This threat is similar to the ones that used the PDF /launch feature, as it also used a valid feature for malicious purposes. As in the /launch incidents, the fact that this used a valid feature makes it a more relevant threat. Creating .MOV files that connect to URLs does not require any special technical knowledge and can easily be done. Cybercriminals can thus very easily create a construction kit for this from which malicious QuickTime movies can be easily generated in batches.

http://blog.trendmicro.com/trojanized-mov-files-faq
__________________
.
Malware = You don't scare me

A different perspective https://rt.com - https://rt.com/on-air
  #2  
Old August 6th, 2010, 08:06 PM
funkydude's Avatar
funkydude funkydude is offline
Massive Poster
 
Join Date: Apr 2004
Posts: 5,992
Default Re: Trojanized .MOV Files

I haven't been installing anything made by apple for several years now, not because it was unsecure, but most of it was bloatware. This kind of story just makes me glad I did. Next to it on the "don't install" list is java, adobe reader, and flash is counting it's final days.

OffTopic: MKV all the way!
__________________
OpenDNS with DNSCrypt

SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs
HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere
 

Wilders Security Forums > Other Security Topics > malware problems & news « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 06:25 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums