Friday, 2 September 2011

Increase in malicious spam



Rodel Mendrez from M86 Security labs has made an excellent post on a Massive Rise in Malicious Spam:

http://labs.m86security.com/2011/08/massive-rise-in-malicious-spam/





As he notes in his conclusion, "It seems spammers have returned from a holiday break and are enthusiastically back to work."





So I decided to check out if I had received some spam as well. Jackpot ;-) !






UPS notification























































Re: End of July Statement Required









Your credit card has been blocked











ACH Transfer Review







Most of the files are displaying a Word or PDF icon to trick

the user in opening the file:







Some examples of attachments, with their respective

VirusTotal results:



Invoice_08.17.2011_Collcod.exe

MD5: cf0397bb622e4ed9dfdeb07fcbfa9687

VirusTotal Report



MasterCard_invoce_ID73284783275943.doc.exe

MD5: 0b7eba77dd4bcea3c670c4a664e98778

VirusTotal Report



UPS_Document.exe

MD5: 17f9148b130a94ab1f50030ebbf2415a

VirusTotal Report



form-62091.exe

MD5: e18d8cb2a4264a3c559d7967b3c6ab99

VirusTotal Report



When opening either of these files, you can end up with a rogue.

One example rogueware I got was "System Repair":



System Repair rogueware



The dropped file that is launching the rogueware:



pusk3.exe

MD5: 27077c2058983bb76bd09cdad69f7bde

Result: 36/44 (81.8%)

VirusTotal
Report

ThreatExpert
Report

Anubis Report







Conclusion

Conclusion is pretty simple: Do not open any attachments from unknown senders.

If you happen to be infected with System Repair, you can for example use the guide on Bleepingcomputer:

http://www.bleepingcomputer.com/virus-removal/remove-system-repair


Tuesday, 12 July 2011

Guide to Earn Money from Forex Trading in Urdu

Forex trading in urdu,Forex news in urdu,Forex Market Trading,
 
 Trading Forex is a well-known business, moreover people have been trading currencies for decades already.

 

Tuesday, 5 July 2011

earn money ity.im Own Blog

What is a ITY.IM.
We are a free URL shortening service with cutting edge features!
Get paid to share your links on the internet! (WATCH VIDEO)
Upload images and get a short url for them! (MORE)
Add custom content such as banner exchanges to your destination pages! (MORE)
Get paid to promote ity.im and refer friends! (MORE)
Win weekly cash prizes! (MORE)
Own a website or blog? Monetize your website with ity.im! (MORE)
Have a phpBB,Vbulliten forum Monetize it! (WATCH VIDEO)
Have a wordpress blog? Monetize it!
An API is available for custom integration into your websites! (MORE)

  • Click Hare This Bunner And Join 


Get paid to promote ITY.IM ANYWHERE!
Earn up to $0.40CPM for US traffic for sending visitors to your paid to promote link!
On top of that, when someone signs up under your account you will earn:





ADDITIONAL REFERRAL BONUSES:
When you have a total of 10 referrals you will earn a bonus of $2.00
When you have a total of 100 referrals you will earn a bonus of $25.00
When you have a total of 1000 referrals you will earn a bonus of $300.00

By referring others you also have a chance to win the weekly referral contest, see "weekly contest" section for leaderboard and current prize amounts.

Earn up to $4.00 / 1000 visitors to your links.

Get tiny URLs, great for when text space is limited. All advertising is family-safe with no popups and scanned by our anti-virus scanner on a regular basis!

Low minimum payout at only $3.00.Alertpay And Palpal.
Fast, reliable customer support with our support ticket system!
Manage unlimited links easily with our advanced interface.
Advanced stats display broken down by day and month!

We are constantly updating and improving our platform adding new features and innovations!

Monday, 4 July 2011

What is payment by Western Union Quick Cash

What is payment by Western Union Quick Cash,
 payment by Western Union Quick Cash in urdu Pakistan,
Google Adsense payment 2011, by Western Union Quick Cash Payment Pin Note And Go Western Union Resived Payment ,

Sunday, 3 July 2011

Confarm Ownership


''This post confirms my ownership of the site and that this site adheres to Google AdSense program policies and Terms and Conditions''