Check Point Advisories

Update Protections against Recent Malware Threats (2-Mar-08)

Check Point Reference: CPAI-2008-033
Date Published: 2 Mar 2008
Severity: High
Last Updated: Tuesday 01 January, 2008
Source: http://www.spywareremove.com/removeHDTBar.html
http://www.fbmsoftware.com/spyware-net/application/Dealio_Toolbar/
http://www.spywareremove.com/removeEZTracks.html
http://www.spywareguide.com/product_show.php?id=3367
http://www.spywareremove.com/removeBaiduBar.html
http://www.emsisoft.com/en/malware/?Adware.Win32.Softomate.ag
http://research.sunbelt-software.com/threatdisplay.aspx?name=PeoplePal%20Toolbar&threatid=48411
Protection Provided by:
Who is Vulnerable? Microsoft Windows clients
Vulnerability Description Malware is a software designed to infiltrate or damage a computer system without the owner's informed consent. It is a general name for a variety of forms of hostile, intrusive, or annoying programs like Viruses, worms, Adware, Trojans, and spyware that exploit unprotected clients, using network access to intrude upon organizations, destroying or stealing data.

Spyware is computer software that is installed without the user's informed consent on a personal computer to intercept or take partial control over the user's interaction with the computer. Spyware programs can collect various types of personal information, install additional software, redirect Web browser activity, or divert advertising revenue to a third party.

Adware is an advertising-supported software package which automatically plays, displays, or downloads advertising material to a computer after the software is installed on it or while the application is being used.

A Trojan horse is a program that installs malicious software while under the guise of doing something else.  Trojans are known for installing backdoor programs which allow unauthorized non permissible remote access to the victim's machine by unwanted parties with malicious intentions.

Vulnerability DetailsThe update includes new protections against 7 recent malware threats:

Spyware: HDTBar - HDTBar is an adware spyware that installs an Internet Explorer toolbar and shows commercial advertisements. It can also change browser's settings and may download arbitrary files from the Internet. HDTBar can silently install itself into the computer while visiting some insecure web sites.

Toolbar: Dealio - Dealio toolbar is a free shopping comparison utility bar for the web browser that provides search results for paid advertisers. It hijacks the error page.

Toolbar: Ez-Tracks - Ez-Tracks is an adware Internet Explorer toolbar that changes the browser settings. It redirects searches to a different server, tracks user's activities and delivers annoying and unwanted advertisements.

Toolbar: Deepdo - Deepdo toolbar is a Chinese based toolbar for the web browser that provides search results for paid advertisers. It hijacks the error page and displays ads.

Toolbar: Baidu - Baidu Toolbar is an adware toolbar affiliated with a Chinese search engine. It redirects search engine results and monitors user's search queries and browsing. It builds a marketing profile, based on the user's browsing habits.

Toolbar: Sofa - Sofa Toolbar, also known as Chinese Softomate is a third party utility bar for the web browser. It redirects searches to its own server and adds other advertising icons to the browser.

Toolbar: PeoplePal - People Pal Toolbar is an adware program that displays pop-up ads based on the surfing behavior of the user.

Protection Overview

×
  Feedback
This website uses cookies for its functionality and for analytics and marketing purposes. By continuing to use this website, you agree to the use of cookies. For more information, please read our Cookies Notice.
OK