Microsoft's AntiSpyware Disabled by Spyware
Ruke writes "A trojan has targeted Microsoft's AntiSpyware program, deleting all files within the C:\Program Files\AntiSpyware folder, as well as logging keystrokes at several online banking sites." The good news is that it's a Trojan, so one still has to bother with running an attached file.
Not that that has ever prevented Slashdot from reporting things like these as "vulnerabilities".
Believe it or not, someone's actually documented this.
.vbs file WITH SCRIPT BLOCKING ON.
.swf file. Flash player required.
Norton 2005 gets pimpslapped by a
Warning: Link is to
Striking fear in the authors of godawful fanfiction, I am here, appearing in darkness, Tuxedo Jack!
The description at Sophos (an AV firm) might be easier on the brain (i.e. not get anyone's grammar hackles up).
Troj/BankAsh-A