Update Protection against Recent Malware Threats (2-Nov-09)
| Check Point Reference: | CPAI-2009-272 | |
| Date Published: | ||
| Severity: | ||
| Source: | Botnet: Backdoor.Win32.Httpbot.yi Trojan: Packed.Win32.Krap.w Trickler: Trojan.Win32.Agent2.kxu Trickler: Trojan-Downloader.Win32.Pher.ij Trickler: Trojan-Downloader.Win32.SillyFDC-DS Worm: W32.Fnumbot Worm: P2P-Worm.Win32.Malas.r Rogue-Software: Safety Center Rogue-Software: Personal Guard 2009 Rogue-Software: Windows Antivirus Pro |
|
| Protection Provided by: |
Security Gateway
|
|
| Who is Vulnerable? Microsoft Windows clients | ||
| Vulnerability Description The update includes new protections against 10 recent malware threats: Botnet: Backdoor.Win32.Httpbot.yi Trojan: Packed.Win32.Krap.w Trickler: Trojan.Win32.Agent2.kxu Trickler: Trojan-Downloader.Win32.Pher.ij Trickler: Trojan-Downloader.Win32.SillyFDC-DS Worm: W32.Fnumbot Worm: P2P-Worm.Win32.Malas.r Rogue-Software: Safety Center Rogue-Software: Personal Guard 2009 Rogue-Software: Windows Antivirus Pro |
||
|
Vulnerability Details Malware is a software designed to infiltrate or damage a computer system without the owner's informed consent. It is a general name for a variety of forms of hostile, intrusive, or annoying programs like Viruses, worms, Adware, Trojans, and spyware that exploit unprotected clients, using network access to intrude upon organizations, destroying or stealing data. Botnet is a term for a collection of software robots that run autonomously and automatically. The term is often associated with malicious software but it can also refer to the network of computers using distributed computing software. A Trojan horse is a program that installs malicious software while under the guise of doing something else. Trojans are known for installing backdoor programs which allow unauthorized non permissible remote access to the victim's machine by unwanted parties with malicious intentions. Rogue Software is a software that uses Malware or malicious tools to advertise or install itself or to force computer users to pay for removal of nonexistent malware. Rogue software will often install a trojan horse to download a trial version, or it will execute other unwanted actions. |
Protection Overview
The update enables the Header Rejection protection to detect and block the malware based on pre-defined header names.
In order for the protection to be activated, update your Security Gateway/VPN-1 product to the latest SmartDefense update. For information on how to update SmartDefense, go to SBP-2006-05, Protection tab and select the version of your choice.
To configure the defense, select your product from the list below and follow the related protection steps.