Archive for August, 2010

Zeus Botnet Attacks via FedEx Scam

By Pedro Bueno and Adam Wosotowsky at 31 August, 2010, 6:18 pm

Yesterday we discovered a new Zeus campaign.
Most of the messages associated with the new spam campaign are linked to the Asprox botnet. This time, the focus is on FedEx. Most of the attachments start with either FedExDoc[randomnumbers].exe or FedExInvoice[randomnumbers].exe. Those attachments are recognized as the Bredolab Trojan, which will download the Zeus component.
This Zeus variant [...]

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Read More >>

MotoSpeak and Sing and Run Random Apps?

By Randy Abrams at 31 August, 2010, 12:32 pm

In addition to recently getting a Droid 2, I purchased a Motorola H17txt Bluetooth headset. When used with a Blackberry or an Android based phone you can download and install an application called MotoSpeak that will read text messages and emails through the H17TXT. Before you go looking for such a headset be warned, there … Read More.

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Read More >>

Labs Releases Whitepaper on Cooperative Anti-Malware on Endpoint and Gateway

By David Marcus at 31 August, 2010, 10:27 am

The Anti-Malware engine is a critical and core piece of the McAfee anti-malware solutions. As with any core technology, the engine must be rock-solid stable, fast, and functionally rich.
A new McAfee Labs whitepaper outlines these engine technologies and values, covering both endpoint and gateway uses. Beyond introductions to malware detection methodologies–ranging from exact detection to [...]

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Read More >>

You Have to be a Real Cool Cat!!!

By Randy Abrams at 30 August, 2010, 5:38 pm

You have to be a real cool cat to get into the Cambridge Who’s Who registry. A few months ago I received a spam message from whoswhopublication@gmail.com.  A legitimate Who’s Who organization is very unlikely to be using a Gmail address and they wouldn’t have sent the email to AskESET. Here’s the email:
You were … Read More.

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Read More >>

iPhone OS – Safe again?

By Mike Price at 30 August, 2010, 5:23 am

Three weeks ago a ‘mysterious’ new jailbreak technique was posted to jailbreakme.com. Research to date indicates that this technique leverages two distinct vulnerabilities to gain access to devices. The first issue exploited is a FreeType CFF font handling issue, exploitable via MobileSafari. The second issue exploited is an IOSurface framework issue that allows for privilege [...]

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Read More >>

Facebook ‘em, Danno*

By David Harley at 29 August, 2010, 7:09 am

I'm distressed to note that Facebook is suing a teacher's community startup over its intention to use the name Teachbook, having already persuaded a site calling itself Placebook to switch to the name TraceTrip.
The issue has arisen over alleged "trademark infringement, trademark dilution and unfair competition." So I guess Mark Zuckerberg, the sensitive soul who owns … Read More.

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Read More >>

Cell Phone Telemarketing Hoax

By David Harley at 28 August, 2010, 3:48 am

You may have received an email message that looks something like this. (ESET was just asked about it – thanks to Chris Dale for passing it on.)
Please note: this is, if not an out-and-out hoax, a very misleading message. Don't act upon it until you've read the rest of this article.
REMEMBER: Cell Phone Numbers Go … Read More.

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Read More >>

Test

By David Harley at 27 August, 2010, 1:51 am

What it says in the title: checking a connection problem.

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Read More >>

Open Source Malware Fingerprinting – Free Tool

By Charles Jeter at 26 August, 2010, 3:51 pm

In my ever-widening circle of anti-cybercrime methodology this particular approach to attribution of the criminals looting the free world makes me particularly gleeful and I can’t wait to spread the good news:

Security company HBGary today released an open source tool to digitally fingerprint malicious code and help identify the source of the malware. The … Read More.

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Read More >>

Share Your Password, Spam Your Friends

By Randy Abrams at 26 August, 2010, 3:42 pm

Time and time again security experts warn you not to share your password with anyone, yet sites like Facebook are always encouraging you to give them the password of an account that is not a Facebook account… your email account.
You’ve probably seen the screen shot below on your Facebook friends page. It is asking you … Read More.

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Read More >>