|23 Mar 2010||#1|
New Scareware Leverages the Layered Service Provider.
Security researchers from antivirus vendor Trend Micro warn that a new FAKEAV version operates a ransomware-like component as a Layered Service Provider (LSP) routine. The malicious .DLL blocks access to websites such as Facebook, YouTube, MySpace, The Pirate Bay and others.
The Layered Service Provider is a Winsock feature that has long been abused by malware because it allows altering Internet traffic. The scareware analyzed by Trend installs a .DLL file in the LSP chain, with the purpose of intercepting calls to facebook.com, youtube.com or myspace.com, from Internet Explorer, Firefox and other applications (through svchost).
New Scareware Leverages the Layered Service Provider - Blocks popular websites from being displayed - Softpedia
|My System Specs|
|Similar help and support threads for2: New Scareware Leverages the Layered Service Provider.|
|How to digitally sign a Cryptographic Service Provider (CSP)||Software|
|Layered Security||System Security|
|IE9 new scareware protection||News|
|How much layered security?||System Security|
|Internet Service Provider||Chillout Room|
|New Scareware Leverages the Layered Service Provider.||Security News|
© Designer Media Ltd
All times are GMT -5. The time now is 07:22 PM.