Review

Messages from Malware authors in Malware

Published: October 2, 2010 Reading time: 1 min

During our analysis of the different malware families we sometimes stumble upon some messages inside the viruses placed there by their authors. For example, the TDSS Trojan family is known to contain random strings from “Hamlet” and from the Bible. Also there is the Koobface family which contains random sentences – mostly taken from Wikipedia articles, like in the last variant we discovered, about the Tower of London. TDSS: ...

Continue Reading

Browser cookies are becoming an issue

Published: September 23, 2010 Reading time: 3 min

The New York Times is reporting a rising number of law suits against some major players because of their use of persistent web tracking: — Fox Entertainment Group — NBC Universal — Specific Media — Quantcast The Times said the suits are claiming that the companies used Flash cookies to collect data on browsing activities in spite of the fact that users had privacy settings on to block them. Those Local Shared Objects (LSOs) are persistent cookies that are stored in several ways and in some cases will restore themselves when deleted. One is available, with a detailed description here. ...

Continue Reading

More Spam with JavaScript redirectors

Published: September 23, 2010 Reading time: 1 min

We received new spam emails which contain a JavaScript redirector in form of a HTML attachment. The emails we received have the subject “Consultation Appointment”. The decrypted JavaScript consists of new JavaScript code. This JavaScript redirector loads yet another JavaScript from the internet. The domain which is hosting the malicious .js is registered to someone from Malaga. Domain tools show that this person has registered about 2.400 other domains. ...

Continue Reading

Scammers set their sights on Resident Evil: Afterlife

Published: September 20, 2010 Reading time: 1 min

Resident Evil. Man, those films are terrible. Frankly, I’m happy to end the writeup right there, but if I did you’d miss out on all the fun. Resident Evil Afterlife is now in cinemas (unfortunately) and scammers are all too happy to cash in. watchresidentevil4(dot)com is our port of call today: Try to watch the film, and you’re prompted to install ClickPotato (from Pinball Corp). There’s also four other items preticked, which is nice of them. Installing that lot gives you a prompt to “see premium content”. ...

Continue Reading

“Here you have” worm linked to cyber jihadists

Published: September 11, 2010 Reading time: 2 min

A worm collectively dubbed by the security industry as the “Here you have worm” has been making its way onto corporate networks over the past 24 hours. The worm arrives via e-mail using the subject line “Here you have” or “Just For you“ along with an executable disguised as a PDF file. It first appeared last month sending spam e-mails from [email protected]. The worm creates the following files: (Note: See the full report in our sandbox -> http://x.maldb.com/?p=44309#more-44309) ...

Continue Reading

One Million Calls Placed From Gmail in 24 Hours

Published: August 29, 2010 Reading time: 2 min

If you’re as big as Google, there’s no such thing as a small product launch. So when Google introduced voice calls into its webmail service Gmail, essentially launching a Skype competitor, it was bound to be a popular feature. How popular, exactly? Well, according to a tweet from Google, the users seem to love it, as more than one million calls were placed in the first 24 hours since the feature went live. ...

Continue Reading

LifeLock’s CEO Davis was victim of ID theft 13 times

Published: May 20, 2010 Reading time: 3 min

The Phoenix New Times has reported that the CEO of LifeLock ID theft protection service of Tempe, Ariz., has had his identity used by rip-off artists 13 times since 2007. CEO Todd Davis advertised his social security number publically to assure customers that his service could protect their identity. The service cost $10-15 per month. In March we blogged the story when the U.S. Federal Trade Commission and LifeLock reached a settlement in which the company would pay $12 million – $11 million of which would be refunded to consumers – for fraud. ...

Continue Reading

If you think Facebook privacy is so bad, the open Web is worse

Published: May 19, 2010 Reading time: 6 min

It seems like anyone who wants to be anybody is whacking Facebook over its loose — or rather loosening — privacy policies. Earlier this month, with disregard to the grammer momma taught me, Even I whacked CEO Mark Zuckerberg aside the head about Facebook privacy. As bad as pundits make out Facebook privacy to be, people can, and do, reveal plenty of information on the Web, too. Which place do they reveal more? I set out to find out in a non-scientific experiment, looking for publicly available information about one of my sisters. ...

Continue Reading

iPad isn't for everyone, so deal with it

Published: May 19, 2010 Reading time: 4 min

Thirty-two days ago, I purchased Apple’s iPad, after proclaiming that I wouldn’t. A gadget like this one should be tested if repeatedly blogged about. I would have used a for-reviews loaner, but I’m on the same fraked list as Gizmodo. I bought my own. A month-or-so usage later, I agree with Tumblr and Instapaper developer Marco Arment, who asked about iPad yesterday: “What’s it for, really? Logically, it doesn’t make a lot of sense for most computer owners…most people will have trouble justifying the $500 entry price.” ...

Continue Reading

Mozilla turns up the fire, Firefox 4 betas to begin in June

Published: May 11, 2010 Reading time: 6 min

With competition in the Web browser field having transitioned from cold to boiling in less than a year’s time, Mozilla suddenly finds itself playing catch-up against not only Apple and Google, but Microsoft as well. In March, the organization realized it needed to completely make over Firefox 4 if it wanted to remain feature competitive against a fast-rising Google Chrome. In a live presentation yesterday, Mozilla Firefox director Mike Beltzner admitted that his group’s March roadmap, which involved an interim release of Firefox 3.7, had too many steps. Now the group has decided to straighten out its path by grafting version 3.7’s main additions onto a point release Firefox 3.6.4, and shifting gears to focus on version 4.0. ...

Continue Reading

What about the WiMAX networks that aren't Sprint/Clearwire?

Published: May 11, 2010 Reading time: 2 min

With Clearwire and Sprint pushing for mobile WiMAX coverage in 80 U.S. markets by the end of 2010, and promising three new WiMAX-powered smartphones in the near future, it’s easy to lose sight of the wireless technology as a solution for rural residential broadband. Today, Kansas Broadband Internet (KBI) announced it is moving ahead with the construction of its own WiMAX network with PureWave as the exclusive hardware provider. The finished network will cover 18 counties, and more than 12,000 square miles. With only 33 residents per square mile, Kansas is one of the United States’ ten least densely populated states. ...

Continue Reading

Wi-Fi at 60 GHz Will Be 10 Times Faster

Published: May 11, 2010 Reading time: 1 min

The Wi-Fi Alliance and the Wireless Gigabit Alliance have reached an agreement to set up standards for Wi-Fi to operate in the previously unclaimed 60 GHz frequency band, which would offer up to 10 times faster data transfer speeds. Currently, Wi-Fi operates in the 2.4 GHz an 5 GHz frequency bands. ”The 60-GHz band allows for significant boost in performance, so we are talking about speeds in the gigabits per second range,” says the executive director of the Wi-Fi Alliance, Edgar Figueroa. ...

Continue Reading

Surveys: young adults getting more privacy-aware on Internet

Published: May 11, 2010 Reading time: 2 min

The University of California, Berkeley, has found that more than half young adults have become more aware of Internet privacy issues than they were five years ago. That number is similar to Internet users their parents’ age or older. “In its telephone survey of 1,000 people, the Berkeley Center for Law and Technology at the University of California found that 88 percent of the 18- to 24-year-olds it surveyed last July said there should be a law that requires Web sites to delete stored information. And 62 percent said they wanted a law that gave people the right to know everything a Web site knows about them.” ...

Continue Reading

What does PHP stand for? Probable Hacked Page?

Published: May 11, 2010 Reading time: 1 min

Late last week, the wires were buzzing over news that the official site of PHP-Nuke “Professional Content Management System“ was serving malware. I am frankly amazed to see the site still infected 4 days later. We see hacked sites everyday and the majority are running PHP-driven applications such as Content Management Systems (CMS). The PHP-Nuke site is currently running PHP v. 5.2.9. Server: Apache/2.2.11 (Unix) mod_ssl/2.2.11 OpenSSL/0.9.8e-fips-rhel5 mod_auth_passthrough/2.1 mod_bwlimited/1.4 FrontPage/5.0.2.2635 PHP/5.2.9 ...

Continue Reading

IE losing market share, Chrome gaining

Published: May 4, 2010 Reading time: 1 min

For the first time, Microsoft’s share of the browser marked has slipped below 60 percent, according to figures from Net Applications, a Aliso Viejo, Calif., web app and metrics firm . Browser market share: Microsoft — 59.95 percent Mozilla’s Firefox — 24.59 percent Google Chrome — 6.73 percent Apple’s Safari — 4.72 percent Opera — 2.30 percent. Story Here.

Continue Reading

Search