<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	
	xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>The Inquisitr &#187; firefox malware</title>
	<atom:link href="http://www.inquisitr.com/tag/firefox-malware/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.inquisitr.com</link>
	<description>The Better Mix</description>
	<lastBuildDate>Wed, 25 Nov 2009 02:31:14 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Firefox Threat: &#8220;Rare&#8221; Malware Targeting Browsers</title>
		<link>http://www.inquisitr.com/10711/firefox-malware-threat/</link>
		<comments>http://www.inquisitr.com/10711/firefox-malware-threat/#comments</comments>
		<pubDate>Thu, 04 Dec 2008 17:20:05 +0000</pubDate>
		<dc:creator>JR</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[chromeinject]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[firefox malware]]></category>
		<category><![CDATA[firefox threat]]></category>
		<category><![CDATA[greasemonkey]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://www.inquisitr.com/?p=10711</guid>
		<description><![CDATA[Firefox users, be warned: A &#8220;novel&#8221; and &#8220;rare&#8221; type of malware floating around the Web may try to steal your banking passwords directly through your browser.
The program, called Trojan.PWS,ChromeInject.A, looks like a regular Firefox plug-in once it gets into your system. In fact, it&#8217;ll show up in the browser as part of Greasemonkey, the fully [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.inquisitr.com/wp-content/firefox-threat.jpg" alt="" title="firefox-malware-threat" width="214" height="207" class="alignright size-medium wp-image-10713" />Firefox users, be warned: A &#8220;novel&#8221; and &#8220;rare&#8221; type of malware floating around the Web may try to steal your banking passwords directly through your browser.</p>
<p>The program, <a href="http://www.bitdefender.co.uk/NW900-uk--BitDefender-detects-novel-approach-to-stealing-web-passwords.html">called Trojan.PWS,ChromeInject.A</a>, looks like a regular Firefox plug-in once it gets into your system. In fact, it&#8217;ll show up in the browser as part of <a href="http://www.inquisitr.com/tag/greasemonkey/">Greasemonkey</a>, the fully legit and quite handy customization tool. </p>
<p>This bad boy, though, won&#8217;t do you any good. Researchers at BitDefender found the malware will automatically run every time you start Firefox, <a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&#038;articleId=9122419&#038;source=rss_news">then use JavaScript</a> to identify any of about 100 different banking and financial sites you might surf to. Bank of America, Wachovia, and even PayPal are said to be included. Once it sees you on one of those sites, it&#8217;ll snag your login info and password, then send it all to a server in Russia.</p>
<p>Most people are being bitten by the ChromeInject bug by either downloading a program they think is legit, or by the phenomenon known as &#8220;<a href="http://en.wikipedia.org/wiki/Drive-by_download">drive-by download</a>,&#8221; in which an e-mail or Web site installs the program without the user&#8217;s knowledge.</p>
<p>Antivirus programs will likely add protection against the bug before long &#8212; BitDefender says it already has &#8212; but in the meantime, the smartest thing to do is to keep up your own safeguard. Mozilla&#8217;s <a href="http://addons.mozilla.org">official add-on site</a> has no instances of the bug, researchers say. Mozilla has been extra vigilant in its add-on scanning since some <a href="http://www.inquisitr.com/123/viruses-hit-mozilla-mp3s/">questionable code was found</a> in a Vietnamese language pack on its site back in May.</p>
<div class="tradevibes_linkdiv"><a class="tradevibes_show_widget" href="http://www.tradevibes.com/company/profile/bitdefender">BitDefender</a></div>
<p><script language="JavaScript" type="text/javascript" src="http://qbase.tradevibes.com/widget/bitdefender"></script></p>


<p>Related posts:<ol><li><a href='http://www.inquisitr.com/17286/mozilla-releases-firefox-306/' rel='bookmark' title='Permanent Link: Mozilla Releases Firefox 3.0.6'>Mozilla Releases Firefox 3.0.6</a></li><li><a href='http://www.inquisitr.com/16542/obamas-website-malware-is-coming-to-america/' rel='bookmark' title='Permanent Link: Obama&#8217;s Website: Malware is coming to America'>Obama&#8217;s Website: Malware is coming to America</a></li><li><a href='http://www.inquisitr.com/22543/mozilla-releases-firefox-309-preps-35-beta-4/' rel='bookmark' title='Permanent Link: Mozilla Releases Firefox 3.0.9, Preps 3.5 Beta 4'>Mozilla Releases Firefox 3.0.9, Preps 3.5 Beta 4</a></li></ol></p>]]></content:encoded>
			<wfw:commentRss>http://js-kit.com/rss/www.inquisitr.com/p=10711</wfw:commentRss>
		<slash:comments>6</slash:comments>
	
		<media:thumbnail url="http://www.inquisitr.com/wp-content//var/www/vhosts/inquisitr.com/httpdocs/wp-content/firefox-threat-150x150.jpg" />
		<media:content url="http://www.inquisitr.com/wp-content//var/www/vhosts/inquisitr.com/httpdocs/wp-content/firefox-threat.jpg" medium="image">
			<media:title type="html">firefox-malware-threat</media:title>
			<media:thumbnail url="http://www.inquisitr.com/wp-content//var/www/vhosts/inquisitr.com/httpdocs/wp-content/firefox-threat-150x150.jpg" />
		</media:content>
	</item>
	</channel>
</rss>
