This is a read-only archive of malwareremoval.com. No new posts or registrations. Privacy Page
Community Information

Crisis actually wants to be in your VM!

1 min read

This thread's last reply is from August 22, 2012, 7:04 PM UTC. Software, malware, and removal-tool advice below may be out of date — treat specific steps and download links with caution.

Security watchers have discovered a virus strain that compromises VMware virtual machines as well as infecting Mac OS X and Windows computers and Windows Mobile devices. It demonstrates previously unseen capabilities in the process.

The Crisis malware typically arrives in a Java archive file (.jar) and is typically installed by posing as a Flash Player Java applet to trick a victim into opening it.

The archive contains executable files targeting Apple and Microsoft operating systems; the malware is able to detect which platform it is running on and serve up the correct variant.


Story @ The Register
Analysis @ Securelist
Analysis @ Symantec
ZB