Featured Stories
Google  Project Vs Facebook Safety Features This is how hacker steal your Facebook password
 
Facebook Security

Google+ Project Vs Facebook Safety Features

Today there are many social networks on the internet and everyday new ones are being introduced with new and better features. They have unique and useful features, which makes it easy for users to remain updated with friends. They also offer apps for different smartphones providing even easier access to friends and other useful information. [...]

This is how hacker steal your Facebook password

There’s many attackers out there who want to steal your credential information. And no doubt, Facebook as one of the largest Social Networking sites in the world, always been a target of attack from the bad guys. Let’s take an example from the following message: Your facebook account will be closed for security reasons, because [...]

VLC Media Player 1.1.9 closes security holes

Another popular and widespread software receives an update to eliminate security vulnerabilities today: The media player VLC has been released in version 1.1.9. In older versions cyber crooks could smuggle in malware like Trojans by making possible victims play specially crafted S3M (modtracker) music files or manipulated MP4 files. As VLC also comes with a [...]

Read the full story

13 April 2011

Windows Restore Adware Removal Instructions

The Emsisoft malware research team has discovered a new outbreak of the Windows Restore adware. Emsisoft Anti-Malware detects this malware as Adware.Win32.WindowsRestore. Windows Restore is a rogue application. A rogue application tries to trick you by displaying false positive/misleading scan results report, which says that your computer has a problem, or infected with viruses or [...]

Read the full story

13 April 2011

Avira Antivir Premium

Lab Matters – Malware in Spam Messages

Head of Content Analysis and Research Darya Gudkova joins Ryan Naraine on this episode of Lab Matters to talk about the use of spam e-mails to launch malware attacks.

Read the full story

13 April 2011

How to Remove Windows Fix Disk or WindowsFixDisk (Uninstall Guide)

WindowsFixDisk is a fake computer analysis and optimization program that displays fake information in order to scare you into believing that there is an issue with your computer. WindowsFixDisk is installed via Trojans that display false error messages and security warnings on the infected computer. These messages will state that there is something wrong with [...]

Read the full story

13 April 2011

Beware if you got your “Reqest” rejected.

CA ISBU came across an active spam email campaign containing a malware as file attachment, as seen on [Figure 1]. The spam mail informs the recipient that their “Reqest” has been rejected. It requires recipients to check the attachment containing the PDF document for more information.                                                                                          [Figure 1 - Fake Rejected Request [...]

Read the full story

13 April 2011

April 2011 Patch Tuesday

Once again, this day of every month is the scheduled release of updates from Microsoft. April 2011 Patch Tuesday from Microsoft contains 17 security bulletins (covering 64 vulnerabilities) 9 of the issues rated “Critical” in terms of the Maximum Severity Rating and Vulnerability Impact. Below is the list of the Critical security bulletins:MS11-018 – Cumulative [...]

Read the full story

13 April 2011

New Zero-Day Attack in Adobe Products (CVE-2011-0611)

Last month, Adobe had released a security advisory and a product update about a critical flaw affecting Flash Player versions and a vulnerable component, authplay.dll, of Adobe Reader and Acrobat that was exploited in the wild, APSA11-01. The vulnerability that was exploited in the wild in targeted attacks via Flash (.swf) file embedded in a [...]

Read the full story

13 April 2011

Spamvertised “Reqest Rejected” Campaign Serving Scareware

A currently spamvertised scareware-serving campaign is enticing end users into downloading and executing a malicious binary, which drops a scareware variant.Sample subject: Reqest rejectedSample message: “Dear Sirs, Thank you for your letter! Unfortunately we can not confirm your request! More information attached in document below. Thank you Best regards.“Sample attachments: EX-38463.pdf.zip; EX-38463.pdf.exeDetection rate:EX-38463.pdf.exe – TrojanDownloader:Win32/Chepvil.J [...]

Read the full story

13 April 2011

Rogue number crunching

Researcher Patrick Jordan put together some statistics on the various Rogues he sees on a daily basis, and I thought it made for some interesting reading. How are the rogue AV products shaping up in terms of monthly / yearly numbers? Let’s take a look at what Patrick has pulled out of a fiery lake [...]

Read the full story

12 April 2011

“The Hottest & Funniest Golf Course Video” scam has more than 200,000 likes on Facebook

Right now there's a scam making its way across Facebook linking to a video titled "The Hottest & Funniest Golf Course Video – LOL" (example screen shot below). Websense customers are protected with by ACE, Advanced Classification Engine. During the 15 minutes it took to write this post over 7,000 new users liked the page [...]

Read the full story

12 April 2011

Fake Certificate in Malware – with Message

:)

The malware authors every now and then send us virus researchers some messages. For example in the compiled binary itself, or as debug output. Now we found a Zbot Trojan variant which tries to evade detection by carrying a digital certificate and therewith looking more legitimate. And this certificate is registered to “DetectMe! ”, also [...]

Read the full story

12 April 2011

“Worm.Ckbface.adj” spreading via Yahoo Messenger

A “Worm.Ckbface.adj” is spreading via Yahoo Instant Messenger ,that tricks people into downloading what they think is a pictures from a friend but is instead malware that installs a backdoor on Windows systems and spreads to a victim’s IM contacts. The worm arrives via a message from a contact with the word “picture” or “pictures” [...]

Read the full story

12 April 2011

“Facebook Support. Your password has been changed!” contains trojan

MX Lab, http://www.mxlab.eu, started to intercept a new trojan distribution campaign by email with the subject “Facebook Support. Your password has been changed! ID09687″. Note that the number may change with each email. The email is send from the spoofed addresses: account@facebook.com manager@facebook.com The message has the following body: Dear user of FaceBook. Your password [...]

Read the full story

12 April 2011

Facebook Scam Alert: ‘Everyone do check what she did on cam’ Spreading

What did this girl do on her webcam?

We’re monitoring an on-going Facebook scam campaign that seems to be spreading faster than any campaign we’ve come across before. What did this girl do on her webcam? The scam starts with a user being tagged in a photo such as the one above. The photograph is posted in an album called “BBC News” to [...]

Read the full story

12 April 2011

Video – “Windows Activation” Ransom Trojan

ransom_Trojan.Generic.KDV.153863

We recently came across a ransom trojan that prompts the following: “Windows license locked!“ The trojan claims that “you should complete activation” and provides several phones numbers. The numbers:   •  002392216368  •  002392216469  •  004525970180  •  00261221000181  •  00261221000183  •  00881935211841 The trojan claims that the call is “free of charge” but it isn’t, and the trojan author will earn money from the call via a [...]

Read the full story

12 April 2011

Email Security After the Epsilon Incident

There has been a lot of talk in the security industry surrounding the recent data breach experienced by database marketing vendor Epsilon. As detailed in the reports, the company’s email system was broken into, enabling the attacker to obtain information such as names and email addresses associated with Epsilon’s customers. Trend Micro Researcher Rik Ferguson [...]

Read the full story

12 April 2011

Twitter spam and viagra galore

Spam mails claiming to be from Twitter that send you to pharmacy sites are a popular wheeze for spammers, and here we go again. Click to Enlarge It seems I have “two PR messages from Twitter”. If that wasn’t enough to get me clicking (it isn’t), I can also join in on sports conversations, argue [...]

Read the full story

12 April 2011

ZeroAccess, an advanced kernel mode rootkit

In the last couple years there have been three major players who dominated the scene in the field of the kernel mode rootkit development. They are Rustock rootkit – with its latest build discovered in the wild in 2008 – MBR rootkit – firstly discovered in January 2007 – and TDL rootkit, which can be [...]

Read the full story

12 April 2011

One more Adobe 0-day vulnerability using Office files

Today Adobe announced a new 0-day vulnerability (CVE-2011-0611) in Adobe Flash Player and Adobe Acrobat that, similar to the previous 0-day from less than a month ago, was found embedded in a Microsoft Office file. The vulnerability allows an attacker to execute malicious code on a computer and has been spotted in limited targeted attacks. [...]

Read the full story

12 April 2011

Zero-Day Vulnerability in Adobe Flash Player, Reader and Acrobat

Adobe released a security advisory in which it warns from a zero-day vulnerability within current version of Adobe Flash Player, Reader and Acrobat. Affected are Flash Player 10.2.153.1 and earlier versions for Windows, Mac, Linux and Solaris, the current version integrated in the Chrome web browser, and 10.2.156.12 and earlier versions for Android. The authplay.dll [...]

Read the full story

12 April 2011

More fake job domains

Another list of fake job domains, almost identical to this one. Avoid. 1best-position.com 1consulting-online.com allweb-consulting.com besteuro-hire.com consult-wugposition.com first-newoffer.com world-hire.com wug-hire.com wug-myoffer.com

Read the full story

11 April 2011

wug-hire.com fake job offer

Yet another installment in this endless series of fake job offers, the domain wug-hire.com is being used as a reply-to address for this particular scam. The “wug” name has been used before in this spam run. Subject: We have vacancies to be filled by Europe residents only Good afternoon! I am writing to you in [...]

Read the full story

11 April 2011

Twitter worm Profile Spy spreading fast.

It appears that a new Twitter scam is making its way in lots of innocent users twitter account. We call this a Profile Spy worm app. Its basically a rogue Twitter application known as Profile Spy which tricks Twitter users into believing that it can tell them who has been viewing their online profile. If [...]

Read the full story

10 April 2011

Virus That Blocks Itself

antidot activate

Virus:W32/Ramnit is no stranger to many malware analysts/researchers, as it was in the wild back in 2010. Other malware researchers have blogged about the technical details of this interesting virus (here and here, for example); however there are still some noteworthy techniques — and an “easter egg” — waiting to be discovered. One of the [...]

Read the full story

10 April 2011

Security Status

Beware Facebook "Timeline" scams http://t.co/W5EW0cVv
5 months ago
Nigerian government (unknowingly) hosts phishing website http://t.co/uQd42ENw
5 months ago
PCMag Awards McAfee All Access its Editors’ Choice: SANTA CLARA, Calif.--(BUSINESS WIRE)--McAfee today announced... http://t.co/FakV7Vd8
5 months ago
RT @mikko: I hadn't noticed Google Maps has added 3D models of buildings. Here's a (very accurate) view of F-Secure HQ in Helsinki http://t.co/IKfAZlak
5 months ago
North Koreans aren't known for their online presence. But others may be lured into clicking Kim Jong-Il 'videos' too http://t.co/yQOon6YT
5 months ago
How to Protect Your Professional Reputation on Facebook Timeline http://t.co/I4bcR2VN
5 months ago
This is pretty impressive from @Softpedia: Facebook scans 2 trillion link clicks and blocks 220 million posts each day http://t.co/vKsn9gNl
5 months ago
Need for integrated approach to security in industrial control systems - http://t.co/tPBCNOow with @PikeResearch
5 months ago
Some free-based music we play at work http://t.co/xu5agZfc
5 months ago
Japan’s cyber defense weapon: a virus. It includes quotes by @Luis_Corrons via @InfosecurityMag
5 months ago