Tuesday, February 10, 2009

Malware Advisory - [PE_VIRUX.A AWARENESS]

PE_VIRUX.A is a polymorphic file infector capable of infecting .exe and .scr files. This file infector may be downloaded unknowingly by a user when visiting malicious Web sites.

For more information about this malware, please see the following link:

http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=PE_VIRUX.A

Solutions available:
I. Trend Micro strongly recommends updating your pattern file to the latest OPR (Official Pattern Release). OPR 5.821.00 already includes detection for PE_VIRUX.A.

II. If in case your network is already experiencing infections from this malware, the following product settings are recommended:

1. Set first product action to clean

2. Set second product action to pass
note: Use a specific action for each virus/malware type


You can consider applying the preventive measures below:

a. Download from trusted sites or sources only. Unknown sites will possibly direct the user’s browser to malicious websites to download scripts or executables that can infect machines.

b. Make sure that downloaded or copied files are scanned by Trend Micro antivirus first before executing them.

c. Ensure that OfficeScan Web Reputation Services is enabled and the security level is configured as “Medium”.

No comments: