Select Page

Here’s a first — the Italian Gromozon, one of the nastiest pieces of malware in creation, being pushed in disguised form as a rogue antispyware security app.

Gro123988812381823818881

Gr1238818238888881231

(This same page also installs Malwarealarm, but through a different file.)

Incidentally, it’s also the first time we’ve seen Gromozon not being delivered through exploit but through social engineering.

VirusTotal results here.

Alex Eckelberry
(Credit to Sunbelt researcher Francesco Benedini)