Saturday, July 5, 2008

[Lockergnome] Computer Security ~ July 5, 2008

Lockergnome
Lockergnome's Computer Security ~ July 5, 2008   



Lockergnome's Microsoft Office Training Manual: "For Word / Excel / Outlook Users." If you're not composing e-mail or sending instant messages, what are you doing on your personal computer? Most likely, you're working on an important document or spreadsheet. You've got the programs, you use the programs, so why not learn a little bit more about what else those programs can do for you? [ 50 Tips for $7 / Download ]... [Click Here to Download]

Lockergnome help - Antivirus Discussions

Lockergnome help - Trojans/Spyware Discussions

Lockergnome help - Antivirus Discussions - General Discussions

Lockergnome help - Antivirus Discussions - McAfee

Lockergnome help - Antivirus Discussions - Symantec/Norton

Lockergnome help - Antivirus Discussions - AVG

Lockergnome help - Antivirus Discussions - F-PROT

Lockergnome help - Antivirus Discussions - Panda

Lockergnome help - Antivirus Discussions - Free Antivirus

Lockergnome help - Antivirus Discussions - Others

Lockergnome help - Trojans/Spyware Discussions - General Discussions

Lockergnome help - Trojans/Spyware Discussions - Lavasoft Ad-Aware

Lockergnome help - Trojans/Spyware Discussions - Webroot Spy Sweeper

Windows Fanatics
Linux Fanatics
OS X Fanatics
IT Professionals
Web Developers
Problem Solvers
Tech News Watch
RSS & Atom Tips
New Downloads
Exclusive Focus
Bargain Hunter
DVD Deals
Technobabble
Game Invasion
Hardware Help
Media Center
Mobile Lifestyle
Search Engineer
Political Geeks
Office Help
Computer Security

A2Z Flash 'n Bingo: This software creates flash cards and bingo cards. Since you can enter your own list of words, it is especially helpful with children's vocabulary and spelling lists assigned at school. It can also be used with foreign languages. A2Z Flash 'n Bingo creates flash cards and bingo cards with words, definitions, or pictures. You can choose fonts, card sizes, and more. Enter your own words and pictures or play using the list of over 500... [Click Here to Download]

Administrivia

Tech Help and How To

Windows Fanatics
Linux Fanatics
OS X Fanatics
IT Professionals
Web Developers
Problem Solvers
Tech News Watch
RSS & Atom Tips
New Downloads
Exclusive Focus
Bargain Hunter
DVD Deals
Technobabble
Game Invasion
Hardware Help
Media Center
Mobile Lifestyle
Search Engineer
Political Geeks
Office Help
Computer Security






» Disk Redactor
» Dr.Web CureIt!
» 3CX Phone System for Windows Free
» SC-DiskInfo
» ProxyChecker.Net (1.0.0.23)


TrendLabs | Malware Blog - by Trend Micro - 2 new articles

 

Your email updates, powered by FeedBlitz

 
Here are the latest updates for security-news@awsoda.net

"TrendLabs | Malware Blog - by Trend Micro" - 2 new articles

  1. Phishers Pose Fake Apple Billing Woes
  2. Social Engineering Watch: Happy Fourth of July
  3. More Recent Articles
  4. Search TrendLabs | Malware Blog - by Trend Micro

Phishers Pose Fake Apple Billing Woes

Trend Micro Content Security engineers just received a timely Apple Store phishing email. This attack comes well after Apple introduced the 3G iPhone to the consumer market early last month—and conveniently nestled the week before it actually becomes available in stores (in most countries) next week.


Figure 1. Hovering your mouse above the link shows its real destination.

The URL loads the following phishing page which asks the user for personal information such as the user's credit card type, credit card number, expiration date, security code, billing address and social security number:


Figure 2.The phishing page features the same sleek Apple Store interface, but don't be fooled.

This phishing page, like most other phishing attacks we've detected and filtered out, use an insecure protocol (exhibited also by the lack of the lock icon). Knowing this useful tidbit can save target victims from losing their online identities to cybercriminals. Phished Apple credentials give fraudsters access to the Apple store, iTunes store, iPhoto, Apple product registration, and AppleCare services, and most important, the account holder’s credit card information.

Trend Micro users are already safe from threat. The rest, especially Apple customers, are likewise advised to use only their clean bookmarks when visiting sites where sensitive information are likely to be given out.

ShareThis



Social Engineering Watch: Happy Fourth of July

Security analysts mark a secret social events calendar in their heads for good reason. Malware writers have been known to launch offensives using timely celebratory-themed email messages to get users to click on links or open files. Nifty social engineering tricks like these also effectively distract users from the real action: Trojans getting a foot in the door (of target PCs). Independence Day, which is a day of fireworks, floats, picnics and summery festivals for the United States, is no different.

On the Storm-chasing front we were able to capture spam leveraging the Independence Day festivities, a few of which are shown below:

    Subject: Spectacular fireworks show
    Body: The best firework you’ve ever seen
    Subject: Independence Day firework broke all records
    Body: Fabulous Independence Day firework
    Subject: Long Live America
    Body: Celebrate with Pride

Links contained in messages connect users to the following IP addresses:

  1. hxtp:// 66.{BLOCKED}.{BLOCKED}.222/
  2. hxtp:// 24.{BLOCKED}.{BLOCKED}.159/
  3. hxtp:// 67.{BLOCKED}.{BLOCKED}.202/
  4. hxtp:// 68.{BLOCKED}.{BLOCKED}.252/
  5. http:// 24.{BLOCKED}.{BLOCKED}.92/
  6. http:// 68.{BLOCKED}.{BLOCKED}.164/

All except the last two of the listed IP addresses are unavailable as of this writing. Investigations by our threat researchers reveal that clicking on the links trigger the download of the files fireworks.exe-1 and fireworks.exe-2, both detected by Trend Micro as WORM_NUWAR.VQ.

However, it seems not only Storm is keen on leveraging the July 4 celebrations. Our threat researchers have seen a spammed email message that reads like so:

    From: E Greetings
    Subject: You just received an E-Greetings for the 4′th of july

    Body:
    Greeting

    Hello ,
    A Greeting Card for the 4′th of july is waiting for you at our virtual post office! You can
    pick up your postcard at the following web address:

    ptth:\\www.{BLOCKED}ngs.com/u/view.php¿id=a0190313376667

    visit E-Greetings at ptth:\\www.{BLOCKED}ngs.com//
    and enter your pickup code, which is: a0190313376e667

    (Your postcard will be available for 60 days.)

Compulsive clickers will find themselves downloading a 800+ Kb Trojan named july.exe from malicious domain l-g.ro instead of the e-greet.
We detect this file as TROJ_DROPPER.OAC. When this file is opened, it drops and extracts a temporary CAB file in the temp folder. The CAB contains dr.mrc and mirc.ini which are likewise malicious (IRC_ZAPCHAST.BI and Mal_Zap, respectively).
It also dumps several non-malicious files in the same location. IRC_ZAPCHAST variants are a type of script that executes within an mIRC environment where a remote malicious user can issue certain commands on an affected PC, thereby compromising it.

Users in the United States are advised to be wary of similarly-themed email messages they receive in their inboxes within and around the week of Independence Day celebrations. Trend Micro users are already protected from this threat because of the Smart Protection Network.

Stand by. We’ll give you updates on these malware’s final agenda. So far we already block the malicious URLs and detect the dropper and IRC malware. Mal_Zap is a heuristic detection that flags files behaviorally and characteristically similar to IRC_ZAPCHAST variants. This is a proactive detection that protects our customers even before we receive an actual sample of the file. Our threat engineers are also currently investigating on the routines of WORM_NUWAR.VQ.

ShareThis



More Recent Articles



Click here to safely unsubscribe now from "TrendLabs | Malware Blog - by Trend Micro" or change subscription settings

 
Unsubscribe from all current and future newsletters powered by FeedBlitz
Your requested content delivery powered by FeedBlitz, LLC, 9 Thoreau Way, Sudbury, MA 01776, USA. +1.978.776.9498

 

Friday, July 4, 2008

[Lockergnome] Computer Security ~ July 4, 2008

Lockergnome
Lockergnome's Computer Security ~ July 4, 2008   



BlogWizard: BlogWizard allows you to create, edit, and publish your blog entries to the server where your weblog is located. BlogWizard works with all major weblog services that support the Blogger XML-RPC engine. No need to learn difficult HTML tags. BlogWizard has an easy-to-use WYSIWYG interface in which you can manipulate the text any way you like. Make it bolder, bigger, smaller, and insert images and hyperlinks. The interface is intuitive and user friendly, and... [Click Here to Download]

Lockergnome help - Antivirus Discussions

Lockergnome help - Trojans/Spyware Discussions

Lockergnome help - Antivirus Discussions - General Discussions

Lockergnome help - Antivirus Discussions - McAfee

Lockergnome help - Antivirus Discussions - Symantec/Norton

Lockergnome help - Antivirus Discussions - AVG

Lockergnome help - Antivirus Discussions - F-PROT

Lockergnome help - Antivirus Discussions - Panda

Lockergnome help - Antivirus Discussions - Free Antivirus

Lockergnome help - Antivirus Discussions - Others

Lockergnome help - Trojans/Spyware Discussions - General Discussions

Lockergnome help - Trojans/Spyware Discussions - Lavasoft Ad-Aware

Lockergnome help - Trojans/Spyware Discussions - Webroot Spy Sweeper

Windows Fanatics
Linux Fanatics
OS X Fanatics
IT Professionals
Web Developers
Problem Solvers
Tech News Watch
RSS & Atom Tips
New Downloads
Exclusive Focus
Bargain Hunter
DVD Deals
Technobabble
Game Invasion
Hardware Help
Media Center
Mobile Lifestyle
Search Engineer
Political Geeks
Office Help
Computer Security

Just Navbars: You can completely customize your navbar from the colors, shape and fill style so that your navbar will look just how you expected it to be. You can build navbars now by using your favorite images. Or custom fill your navbar with a tiled image or use a gradient fill! Using existing images you can create horizontal navbars as well. New Tube Wizard allows you to quickly create a color matched tube effect for... [Click Here to Download]

Administrivia

Tech Help and How To

Windows Fanatics
Linux Fanatics
OS X Fanatics
IT Professionals
Web Developers
Problem Solvers
Tech News Watch
RSS & Atom Tips
New Downloads
Exclusive Focus
Bargain Hunter
DVD Deals
Technobabble
Game Invasion
Hardware Help
Media Center
Mobile Lifestyle
Search Engineer
Political Geeks
Office Help
Computer Security






» Disk Redactor
» Dr.Web CureIt!
» 3CX Phone System for Windows Free
» SC-DiskInfo
» ProxyChecker.Net (1.0.0.23)


Subscribe via email

Enter your email address:

Delivered by FeedBurner

Blog Archive