Saturday, February 7, 2009

[Lockergnome] Computer Security ~ February 7, 2009

Lockergnome
Lockergnome's Computer Security ~ February 7, 2009   



Hercules Uploader: Orbitfiles.com, an online file storage provider, has increased its Zeus plan space from 3000MB to 5000MB for just $4.99/month. At the same time, the free 1000MB Platon plan is becoming very popular. Orbitfiles.com offers free 1000MB of space to: Store Access Share Back up all your important files! You can now save time and automate your daily backups with Herclues Uploader. It is free to download with any of the two plans. With Hercules Uploader,... [Click Here to Download]

Lockergnome help - Antivirus Discussions

Lockergnome help - Trojans/Spyware Discussions

Lockergnome help - Antivirus Discussions - General Discussions

Lockergnome help - Antivirus Discussions - McAfee

Lockergnome help - Antivirus Discussions - Symantec/Norton

Lockergnome help - Antivirus Discussions - AVG

Lockergnome help - Antivirus Discussions - F-PROT

Lockergnome help - Antivirus Discussions - Panda

Lockergnome help - Antivirus Discussions - Free Antivirus

Lockergnome help - Antivirus Discussions - Others

Lockergnome help - Trojans/Spyware Discussions - General Discussions

Lockergnome help - Trojans/Spyware Discussions - Lavasoft Ad-Aware

Lockergnome help - Trojans/Spyware Discussions - Webroot Spy Sweeper

Lockergnome help - Trojans/Spyware Discussions - Spybot S&D

LinkStash: LinkStash is a Windows bookmarks/favorites manager which works for all later versions of Internet Explorer, Netscape, and Opera. LinkStash will open and close with your browser, and easily store and organize all your favorite links in a familiar Explorer-style tree arrangement. Add new links instantly with a keystroke or handy toolbar buttons in LinkStash or on the IE toolbar. All your bookmarks are contained in one compact file for easy synchronizing to other computers. LinkStash... [Click Here to Download]

Administrivia

Tech Help and How To



TrendLabs | Malware Blog - by Trend Micro - 2 new articles

 

Your email updates, powered by FeedBlitz

 
Here are the latest updates for security-news@awsoda.net

"TrendLabs | Malware Blog - by Trend Micro" - 2 new articles

  1. Cybercrooks Handing Out Malware Flyers
  2. iTunes Invoices and Valentine's Ads Conceal Pharma Spam
  3. More Recent Articles
  4. Search TrendLabs | Malware Blog - by Trend Micro

Cybercrooks Handing Out Malware Flyers

Flyer containing link to malicious website. Image taken from GrandForksHerald.comThe social engineering technique used in this attack takes form not on the World Wide Web, but on a flyer pinned on a car windshield.

The URL stated in the flyers is inaccessible as of this writing. However previous reports have indicated that the page displayed images of several cars on parking lots, with the following text:

To view pictures of your vehicle in Grand Forks, North Dakota download here: CLICK ME FOR THE PICTURE SEARCH TOOLBAR

Clicking the link CLICK ME FOR THE PICTURE SEARCH TOOLBAR on the page triggers the installation of the file PictureSearchToolbar.exe which is detected as TROJ_BHO.TW. It extracts a malicious DLL file, which in turn is detected as TROJ_DLOADER.UTI.

TROJ_DLOADER.UTI then attempts to connect to the malicious domain www.{BLOCKED}dhe.com to download of another malicious DLL file: apstpldr.dll. The said file is also detected as TROJ_DLOADER.UTI.

apstpldr.dll is also installed as a BHO on the affected system. Once the user reboots the system and connects the Internet, a message box appears alerting the user of a malware infection.

Clicking the OK button in the message will direct the user to a rogue AV website, where the users is greeted with fake security alerts. The unknowing user is then prompted to download the file InstallAVg_.exe. The said downloaded file is a rogue AV detected as TROJ_FAKEAV.TJ

Cybercriminals are really doing what they can to get past the users' careful judgment. Using a social engineering technique that is not computer-related, they are able to lure users into malicious domains. Users are advised to be vigilant, and be wary of these schemes, as a malware scheme need not start in front of a computer, or not even at home.

The Trend Micro Smart Protection Network now blocks the malicious domain involved in this attack.

Initially reported by SANS.org.
Image taken from GrandForksHerald.com

Post from: TrendLabs | Malware Blog - by Trend Micro

Cybercrooks Handing Out Malware Flyers



iTunes Invoices and Valentine's Ads Conceal Pharma Spam

February has begun, and as they say, love is in the air.

Along with pharma spam, that is.

We have recently found spammed messages posing as an invoice from iTunes in its e-mail subject but contains an advertisement for a "special Valentine's day sale” containing links that lead to pharma websites.


Figure 1. Spammed messages pretending to be from iTunes

iTunes garnered an estimated 3.34 billion dollars in sales for 2008, and the numbers for early 2009 are quite promising as well. With the great success and vast number of customers, this pretty much explains the usage of iTunes to lure users into pharma sites.

On the other hand, the other spam run takes advantage of timeliness. Arriving on users' inboxes as an advertisement for a Valentine's Day sale, it displays images of the jewelry that are supposedly on sale. Moreover, he email messages are altered so that the address in the From: field contains a Trend Micro-related email address. This kind of technique to evade spam filters has been seen before, which may suggest that this was possibly done by the same spammer.


Figure 2.Spam pretending to be an ad for a valentines' day sale

Clicking the image connects the user to nothing else but the fake Canadian pharmacy website.


Figure 3.Fake Canadian Pharmacy website

The above reported spammed messages are already blocked by the Smart Protection Network.

Additional text by Jonathan Leopando.

Post from: TrendLabs | Malware Blog - by Trend Micro

iTunes Invoices and Valentine’s Ads Conceal Pharma Spam



More Recent Articles



Click here to safely unsubscribe now from "TrendLabs | Malware Blog - by Trend Micro" or change subscription settings

 
Unsubscribe from all current and future newsletters powered by FeedBlitz
Your requested content delivery powered by FeedBlitz, LLC, 9 Thoreau Way, Sudbury, MA 01776, USA. +1.978.776.9498

 

Friday, February 6, 2009

[Lockergnome] Computer Security ~ February 6, 2009

Lockergnome
Lockergnome's Computer Security ~ February 6, 2009   



Secrets to Becoming a Columnist in Newspapers and Magazines: This special report is written not for freelance writers who want to get paid for their work, but for the millions of business people and non-profit executives who simply want to appear regularly, or even occasionally, in a newspaper or magazine by writing a column for free and getting all that valuable publicity. [ Expert Advice for $9 / Download ]... [Click Here to Download]

Lockergnome help - Antivirus Discussions

Lockergnome help - Trojans/Spyware Discussions

Lockergnome help - Antivirus Discussions - General Discussions

Lockergnome help - Antivirus Discussions - McAfee

Lockergnome help - Antivirus Discussions - Symantec/Norton

Lockergnome help - Antivirus Discussions - AVG

Lockergnome help - Antivirus Discussions - F-PROT

Lockergnome help - Antivirus Discussions - Panda

Lockergnome help - Antivirus Discussions - Free Antivirus

Lockergnome help - Antivirus Discussions - Others

Lockergnome help - Trojans/Spyware Discussions - General Discussions

Lockergnome help - Trojans/Spyware Discussions - Lavasoft Ad-Aware

Lockergnome help - Trojans/Spyware Discussions - Webroot Spy Sweeper

Lockergnome help - Trojans/Spyware Discussions - Spybot S&D

Galleon 3D Screensaver: This beautiful galleon from the Age of Great Explorations is crossing the dangerous ocean at full sail again. Through blistering sun and quiet nights blessed by the moonshine, through fierce gun battles and storms, it rushes to new, yet to be discovered lands. Raise your flag, captain, and enter the history. The Spanish Galleon was the most feared warship during the 16th and 17th centuries. Equipped with cannons and mortars, staffed with seasoned seamen or... [Click Here to Download]

Administrivia

Tech Help and How To



Subscribe via email

Enter your email address:

Delivered by FeedBurner

Blog Archive