Juste Goes from Twitter to Facebook
Comments OffAccording to Twitter Spam report:
“Best video” not so great — we’re working on it.
No matter how good that “best video” looks, don’t go to any juste.ru domains. We’re aware of the situation and are working on it.
Juste.Ru seems to have been designed for both platforms and someone must of been logged into both to make this happen. If you’ve gotten this message on Facebook you should just delete it and tell the person who sent it they need to do a system check. Also if you have been hit by this virus, first thing to do is clean your system before you do anything else. Then reset your password, this way you won’t be giving the virus access to the new password.
Microsoft Issues a Security Advisory KB971778
Comments OffMicrosoft Security Advisory: Vulnerability in Microsoft DirectShow could allow remote code execution
http://support.microsoft.com/kb/971778
The systems that are vulnerable are Windows 2000, Windows XP or Windows Server 2003. I like this new way Microsoft is helping the less educated. They now havea Fix it button on the site. This fix it button is a registry change to there system. It does all the work for the End user. Although the corporate field will have to modify the registry there own way.
- Click Start, click Run, type regedit in the Open box, and then click OK.
- Locate and then click the following subkeys in the registry:
- For 32-bit Windows systems:
HKEY_CLASSES_ROOT\CLSID\{D51BD5A0-7548-11CF-A520-0080C77EF58A}
- For 64 bit Windows Systems:
HKEY_CLASSES_ROOT\CLSID\{D51BD5A0-7548-11CF-A520-0080C77EF58A}
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{D51BD5A0-7548-11CF-A520-0080C77EF58A}
- For 32-bit Windows systems:
- On the File menu, click Export.
- In the Export Registry File dialog box, type Quicktime_Parser_Backup.reg, and then click Save.
Note By default, this will create a backup of this registry key in the My Documents folder.
5 ways to get more followers in Twitter
Comments OffI’ve been doing something different in Twitter and I would like to talk about it. I have learned so much today it and yet after the end of the day I’ve gotten even more followers. I’ve gained over 123 so far today alone and I want to share with you some ways to increase your followers.
- Provide Great Value — This one I learned today finding some great articles and retweeting the good articles. This is essential Twitter tactics. If you don’t do this your just going to be keep who you have and not grow.
- Be Funny — Don’t be funny just to be a class clown, that will draw followers but it can also hinder your likely hood of engaging in good conversation. Twitter is a stream of Conversations that doesn’t do well with constant funniness and if your always being the class clown, you will have a hard time keeping a conversation. Now that being said it doesn’t mean to not be funny but to be funny in your way. People like to laugh people are drawn to people who want to communicate about the topics at hand.
Service Pack 2 For Vista is out — Working good on the Cricket Broadband A600
Comments OffMicrosoft has sent out Service pack 2 for Vista, and so I installed it on my machine to see what happens with the Cricket Modem. The Files Microsoft are letting people download are:
- Windows Server 2008 Service Pack 2 and Windows Vista Service Pack 2 – Five Language Standalone X86
- Windows Server 2008 Service Pack 2 and Windows Vista Service Pack 2 – Five Language Standalone for x64-based systems
- Windows Server 2008 Service Pack 2 – Five Language Standalone for ia64-based Systems
All of these are KB948465 and will be released on June 30, 2009 via Automatic updates. I also tested it out and I have a 32 bit system. I am unsure as to the other systems if the Cricket Broadband works or not on the UM100 Modem. I have the A600 Cricket Broadband modem and it installed without a hitch.
According to Ars technica this Service Pack has over 800 hot fixes and have fixed several things that Microsoft did wrong with Service Pack 1. If you have the Beta version you will have to unistall it before you install this service pack. I would love to hear of any problems with Cricket Broadband from others in the forums. If you have problems let me know and I’ll do my best to help you out.
Twitter and the Acai Berry Spammers
Well According to Sopho’s There seems to have been some hacking going on for the Acai Berry spam. Some of the messages were:
It seems to be a random http://random.CN domain but we’ve talked about this in the past. Sopho’s isn’t sure how this happen but I have a suspicion that it was a Phishing attack done on the facebook users recent weeks that have the hackers going to other social sites and trying those passwords.
If you have been compromised on t witter and only use one password, you can bet all you other accounts have been compromised as well. You should change your passwords as soon as possible. You should also make sure in the future not to be tricked into giving out your password which is called Phishing, in which a site with a different url is made to look like Twitter, Facebook, and Myspace log in page.
New Facebook Phishing campaign!
Comments OffAccording to Sans Internet Storm, They have seen some signs of a new Phishing campaign like the Look at this Phishing campaign that went through a few weeks ago. At the time of writing that report they weren’t being resolved they now are being resolved making you look like you are logging into Facebook:
We’ve talked about why criminals want to use your account and why they need to get your passwords. I know they want to take control of your account for one reason or another but that is where the Facebook users need to keep watch on the URLS being displayed when you log into Facebook. If you did that then you are one step ahead of the nefarious criminals and can be at peace. Just like the Look at this campaign if you did visit those sites and given out your password it is strongly recommended to reset your password.
Getting Twitter on your Cricket QA30 Hint Phone!!
So you want to use Twitter with Cricket Phones. I have found a few ways to post to Twitter with http://Identi.ca . I can post to twitter with emails going to Identi.ca. They give you a unique email address that you can use to post and You can receive twitter like sms through them. They do have an options for Cricket but again you would have to use email to post but you can receive through text messaging without a problem.
This Phone comes with it’s own Email application so you would just use the phone to do the emailing. I’ve not gotten this phone just yet because Cricket won’t let me test it out but I am going to assume that with this phone having email capabilities, you can get around the twitter problem very easily. You can use Twittermail to send and receive through your email application. You can receive replies to your email address almost instantly.
Unlike Identi.ca, you can only send to Twitter but can’t receive any updates on twitter. You could however start using Identi.ca exclusively but that would be torture because most of your friends are using Twitter. I wish Cricket would let me test this phone out and find out other secrets for my users.
Upgrading to Twitter Pro — ztrx.net Phishing attempt in the wild!!
Comments OffI just got this alert from a friend of mine and I thought I would share it with you. It looks like there is a new phishing attempt going on with websites try fool it’s users into going http://ztrx.net and From the looks of it. It looks like this:
Upgrade to Twitter Pro – Visit http://bit.ly/[CENSORED] to upgrade your account
It seems that if you get this message on your account you should report it to @Spam and let them know. If you happen to get given out your password it is strongly recommended that you reset your password to prevent any further unauthorize access to your accounts. You should change your password as soon as possible. This is the first attempt they have tried this this weekend so be on the look out for more phishing attempts.
New Spam Campaign for Cooltweeting.com
I got an Email that shows that people are giving out there twitter accounts password for a Free Mac book air. I did a Search for cooltweeting.com and well you take a look.
The Site Cooltweeting.com looks to be a phishing for your information by wanting you to do this:
You agree to receive emails from trusted 3rd parties containing special offers and promotional emails.
Powered by BrandGivewayCentre.com. BrandGivewayCentre.com is an independent rewards program and not associated with any of the above listed merchants or brands. The above listed merchants or brands in no way endorse or sponsor BrandGivewayCentre.com’s offer and are not
liable for any alleged or actual claims related to this offer. The above listed trademarks and service marks are the marks of their respective owners. BrandGivewayCentre.com is solely responsible for all Gift fulfillment. In order to receive your gift you must: (1) Meet the eligibility requirements (2) complete the rewards bonus survey (3) complete the number of sponsor offers in the redemption instructions
(4) Follow redemption instructions.
Personal Antivirus just scareware
I was going through checking a site brought to my attention from a reader and I went there and yep he told me it might be scareware and it was:
If you click “Cancel” or “Ok” you will still get to this page:
Personal Antivirus gets installed in unsuspecting computers by way of exploits, backdoors, Trojans, or unsafe downloading practices. This usually means that if you have it you should remove it by any means necessary because this software has been know to cause more and more trouble as time goes by. This software is fake ware, it tries to tell you have a virus and that they can get rid of it. In fact, this software is not designed with Antivirus engine in it but to illicit pop ups and warning to raise the users security concerns about the computer in question. Downloading programs from bit torrents or other unsafe ways can and most likely will have these types of programs installed alongside the program you wanted.
Facebook and Twitter Phishing going on today!
Comments OffAccording to Techcrunch we have one phishing site ground around peoples inboxes on facebook with it say “Check areps.at”. You go to the site and you will think your at the facebook login but your not. I wouldn’t suggest going to any of these sites, it has been reported by Phishtank.
According to Trend Micro there is one where the url looks like it is a twitter url but isn’t (tvviter[dot]com). The site is what people would call a typosquatting site. This makes people think they are on twitter but aren’t. If you go to these to sites and have given out your passowrd, it is strongly recommended that your reset them:
If you would like to know more about what phsihing is please check out my blog for more information. Don’t forget to check out the forums for more information on this or just to talk about anything on your mind.
Spyware : Michelle Obama’s Ta’s Ta’s Video
Comments Off
I love this one, I was reading the Sans Report about Michelle Obama Ta’s Ta’s on Video. I wanted to investigate this a little further so I went searching around. I found some comment spam links to a site I will not talk about the links directly. The site however had a fake video on it :

It looks like if you hit Cancel or Details it keeps trying to tell you need to install an ActiveX Object. It also makes the user think that there is only one option to use right now. As you can tell it makes you think you can’t cancel or get details but I did. I tried to cancel and it kept on popping up trying to get you to install this active X installer. AVG detects it as:
MobileMe Who me? Could this be Phishing?
Comments Off
MobileMe one of Apples latest software packages, recently started getting emails claiming they need to update their credit card information.
It seems that along with Twitter, Facebook, and PayPal Phishing are on the rise. I know this was going to happen do to the fact of the recession. I’ve seen more and more attempts to send people to the Canadian Pharmacy and to sell you drugs that I wouldn’t recommend buying it online.
Some things I am wondering is when will Apple release they are having to protect their consumers from these types of attacks? I’ve talked about the Apple Botnets and how they will become more and more prevalent due to the fact users think they can never get a virus. See the Apple Ads in 2007 to prove my point.
So let’s talk about online safety, and help those who might need help. Some of my thoughts to help keep the Apple People happy are:
Free Anonymous Browsing with Opera-Tor
Comments Off
Anonymous browsing is something of huge interest to the Internet users, who are very particular about their online privacy and security. There may be many reasons and situations, when you might be interested in using internet anonymously; for instance, you may be working on a public place and do not want to leave the traces or you may not like your family members or office colleagues to know what you have been doing online. Whatever be the reason, but still, it is an area, where a lot research is to be done.
How Anonymous Browsers Operate?
At present there are two dominant techniques used by various anonymous browsing tools. One is the use of JAP Networks, which was used hugely used earlier but later it ran into controversies after a backdoor had to be put into the product to allow interception of child pornographers on insistence of German Police.
The second technique is the use of Tor (The Onion Ring), which only allows anonymous browsing but also facilitates other applications like anonymous P2P, email, IM, and IRC chat. This technique is dominantly used in present day anonymous browsing tools.
JSRedir-R/Gumblar The underlying problem!!
Comments OffSome people have made comments about there website being hosted to Malware injection into there site. I’ve been seing a Lot of talk about JSRedir-R/Gumblar found to be the biggest malware threat on the Web. They estimate that it is 42% of infected websites to be carrying this malware threat, last week. I have heard some think it is weak login creditals.
I on the other hand think the way this is spreading is a Cross Site Scripting vulnerability for these websites but there are a few websites that do keep your login cache on your system. I would recommend if your a web site owner to have your cache deleted everytime you exit your web browser. This should in theory help prevent Cross Site scripting and Website owners should also either buy Anti-virus and Firewall software or install the Free version to better protect your website.
You’ve got hacked thanks to Twitter : Don’t “email me at”
Comments OffI was reading a blog post about Spammers Harvesting Sorrow From Twitter.
Something came to my mind, so I did a little research and a lot of thinking and it finally came to me. It is easy for someone to find your email and use it for there own means. There are several different scenarios I can come up with:
- Impersonating someone you know – It is quite simple to find out who we know and who we follow. You can always find someone who you don’t know the email address of and make it seem like your them to get even more information from the person.
- Receiving Viruses, Trojans, or worms – Although if you have a good Anti-virus this one won’t be getting to you but according to ESET : 10 percent of computer users didn’t know if they had anti-virusware installed. This means that there are going to be some success for malware authors to send out a virus to every who twitters there email address and still have success.
Skype has some Auto-Bots and Friendjungle.com
Comments OffI was on Skype today and got an instant message from some girl:

The Instant message goes like this:
hello there! I was checking people near me and i came across your page, and you seemed interesting..
Mary Fowler says: Im not crazy about Skype though … want to check out my picture and profile ?
use this link: http://www.matchshake.com/?id=4004&profile=rockergrl82
you just sign in (it’s free) to get to me, my username’s rockergrl82.
It looks like this is an Bot to help fool you into thinking it is a real person. The link they give me is a redirect link that lands me on “Friendjungle.com”. I am sure no matter what you answer with the question it asks that it will still send you a link. You can however tell Skype to only allow chat from people on your contact list but that is totally up to you. There is a story from the Rip-off Report about Friendjungle.com, so it looks like they went from text messaging to Skype chat. According to Yahoo Answers, this is more or less a way for them to get money from you. You sign up and before you realize it they are charging your card, so it looks really shady. Although, To Friendjungle credit, they do have a scam section to help you report these types of incidents. I don’t know if this works well or not but you can at least try.
Why Norton users do it wrong with Passwords
Comments OffI just read this blog post Phishing attacks on Facebook users point to efforts to mine login data for profit. After reading one of the suggestions on how to create a good password and I’ll quote:
<
Now I can see where this can be used to figure the password? If people use this method they would still be able to figure it out over time. Let’s say you use the same sequence of numbers and letters after each site you go to. This would make it much easier for a hacker to figure out the other passwords.
I will keep saying this time and time again, remembering passwords for me is the past. I’ve been using Roboform for the past few months and haven’t had any problems. I’ve also have them backed up to Mozy to help protect my passwords. As long as you back them up with Mozy and Keep save a copy of it off your hard drive you will be much safer than trying to remember a good password.
Netspend sends out card that I didn’t order :
I arrived home today with Netspend card in my Mailbox. The letter states that I ordered the card and it has arrived. So I am concerned because of the possible Identity theft that could be going on so I call them to find out what the heck is going on. I call to find out it who signed me up for this and to get some kind of information as to the people who had this information about me. I ask for the financial service that “recommended me for this Card” because I want to make a phone call to them about the security concerns about sharing my personal information. I say that because they had my Name, my mailing address. This isn’t totally hard to find had I had a Land phone but with me just having a cell phone.
Casino Spammers still user Yahoo for Spam : Could this be Malware?
Comments OffIt just shows you just how one Geocities was taken down by Yahoo who owns it, the spammers have to come up with more ways to get you to download there software.
It seems to be linking to “http://bestwinscasino.com/SmartDownload.exe“. From previous post I talked about what that program did but I wanted to do another test with CWSandbox and see what has change. It looks like they must be having problems lately, So If you want to do your own test and send me the link by all means. I don’t know what is going on but, it probably is like the other post about wanting to do some bad things. Virustotal has some anti-virus programs flagging this so I am unsure of the Harmlessness of this file but I wouldn’t install this software. According to Avinti this program is a trojan dropper. So Iwill let you decide on installing this software or not.
Microsoft Release MS09-017
Comments OffMicrosoft Today has released fix a Powerpoint Vulnerability:
It looks like this Powerpoint Vulnerability is in the wild so you should update your Microsoft Office. Autopatcher will download the latest the Microsoft Office patches and help you update your office computers without being on the internet.
Other Software affected by this update is:
PowerPoint Viewer 2003 (KB969615), PowerPoint Viewer 2007 Service Pack 1 and PowerPoint Viewer 2007 Service Pack 2 (KB970059), Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats Service Pack 1 and 2 (KB969618)
All these should be installed as soon as you get a chance. If you have several different version I would recommend Autopatcher to do it for you. While you at it you should also update your Anti-virus and Firewall software. You should schedule a time this week to update these important Microsoft Office programs. You don’t want to clean a system that has a virus or trojan. Hackers will want to jump on board and make your job even worse. This update replaces MS08-051, so please update soon!
When not to post #twitterpornnames
Comments Off
I’ve heard others call this a scam:

I see no evidence this was done to gather your information but Pcworld has sent out the warnings and made people think this was a scam, or a Phishing attack. Although this could be used to get the information needed for your Gmail or other accounts.
I do recommend deleting those tweets and reminding people that you are the only ones that can prevent identity theft. Trend Micro talks about this very detail about the subject but again they don’t think this was conceived as a phishing attempt. I’ll let you decide but remember tweeting that it is a scam will only keep it on the trends, your best advice is just go on with your life and tell everyone to delete that sensitive information.
Using Roboforms On Screen Keyboard
I’ve had someone ask about the On Screen Keyboard, and I thought I would show you how to use it:

As you can see with Roboform, you have a option to use for on screen keyboard. Just clicking the button on the right will do this:
As you can see you can use the On screen keyboard to put in your master password, this is great for those who have the portable Roboform and use on several different systems. Although the on screen keyboard is available on all versions of Roboform. I’ve got the Pro version of Roboform but have the unregistered version of the Portable app and can only have 10 passwords a time, it at least lets me use on the road.
Roboform now has an Pro account this helps let you have your passwords on the road. If you want to learn more about the specials that Roboform has just go check it out yourself. If you would like to see other screenshots by all means see if it is right for you.
See my review of Roboform to read it or download it directly.
Email from Inspot : STD? I don’t think so!
Comments OffThis is most likely an awareness, if you have a regular family doctor and you want to get tested that would be my suggestion. You don’t have to go to this place. I am sure I don’t have an STD because if I have it my wife would and she had 3 Kids so they would of found out. I know of only one person I had had contact with before my wife and I also know where she lives, she had kids also. So I would of found out way before this like 5 years ago.
Anyway this is most likely a trick if you see the last line “Internet Notification Service for Parters or Tricks.” That tells me this a joke but If you are worried go see you doctor, just to be cautious. Although this isn’t security related it is always good practice to get a checkup from time to time.
Identi.ca here I come!!
Comments Off
With Twitter being really Challenging I have switched from Twitter to my new Micro-blogging home. Identi.ca, and Have also changed my updates to go to my Ident.ca profile and no more Twitter. Thanks to some searching around for a Wordpress plugin to go to the Identi.ca Server, It will post automatically.
I encourage all my users to switch from Twitter to Identi.ca but if you can fully switch you can still use your Twitter account with Identi.ca and have SMS with Identi.ca also. So you can use it like you did with Twitter and still have what you like.
On a Side note, all the Cricket Phone users who want to use twitter with your phone, it looks like you can have both with Identi.ca by using Ident.ca twitter integration you can use it to send messages back and fourth on twitter. I have interrogated Identi.ca with my Cricket phone and it works now I don’t know about Twitter because of what happened, but the identi.ca updates are coming my way.
Twitter Suspends my Account
Comments OffIt seems someone got mad at Twitter or at least someone wasn’t to happy:
As you can see when I log into my account this pops up. I am sure my ratio is normal:
- extremely imbalanced follower/following ratio
- aggressive following (a large number of people are followed in a short amount of time)aggressive following (a large number of people are followed in a short amount of time)
- aggressive following (a large number of people are followed in a short amount of time)
- account contains links pointing to phishing sites, malware, or other harmful material
- links in updates disguise the real content of a link given in a misleading or deceptive way.
Now these are the ones that I would not due and am quite confused why Twitter has suspened. I also like how they have an outdate link to there suspended account section of explaintion on getting your account reviewed or finding out why it was suspended. The link they send you to when the RED Stop Sign Appears is:
TweetTornado and What that means to Twitter
Comments OffI had an interesting person follow me today and I want to talk about How Twitter Needs to fix this problem:
In my previous post, I talked about Twitter needing to fix spam problems and here’s why. It’s Called Tweet Tornado and you pay $100 for this program a Month. On the Page, they talk about downloading this software and using it:
You must not abuse, harass, threaten, impersonate or intimidate other Twitter users
You must not modify, adapt or hack Twitter.com or modify another website so as to falsely imply that it is associated with Twitter.com .
Come on Twitter add Tweet filters — Ways to prevent twitter spam!
Comments OffSo I am on twitter tonight and I find some common themes:
- Have you ever heard about paid surveys ? I’m making way over $4000 per month working part time .www.hothotjoboffers.com [Keyword]
- Visit www.nakedoncam.info for 100% FREE LIVE CAM GIRLS! #Lobster Jeremy Mayfield Wolverine #startrek Happy Mothers Day
On any given day you can search for anything with twitter and come up with some valuable information. Now this seems to be more and more spam. There needs to be a way for twitter to stop this but I guess they dont’ want to ruin the experience for new users.
Hothotjoboffers equals Twiitter Spam
Comments Off
Saw this on the Twitscoop API and had to talk about it:
If you go to the site Hothotjoboffers.com you will be redirected to:
Now I know more about this then anyone. I see these types of scams where you can make money by doing survey’s but there are some common princples to consider. Although I have real doubts to this site because when you try to exist it displays:
I always wonder why spam and other sites alike try to persuade you to stay and look. When that happens I am thinking to myself, “Yes I am sure and that little box really makes me mad”. I assume someone bot is making the post to twitter and I wish Twitter would create a rule for this. This would stop this type of spam from getting to us and others. Same Text coming from newly created accounts less than a hour with let’s give it 5 max should be prevented from posting until they are verified by either email or other such ways.
Microsoft to Release One Crictical update for Tuesday
Comments OffMicrosoft has release the information for May’s Patch Tuesday and it looks like there is one major update for Power point:
The Affected software is MS Office 2000, MS office Xp, MS Office 2003, Ms Office 2007, Power point viewer, and MS compatibility pack for Word, Excel, and Power point 2007.
- Windows PowerShell 1.0 for Windows Vista (KB928439)
- Microsoft .NET Framework 3.5 Service Pack 1 and .NET Framework 3.5 Family Update (KB951847)
- Microsoft .NET Framework 1.1 Service Pack 1 (KB867460)
- Windows Malicious Software Removal Tool – May 2009 (KB890830)/Windows Malicious Software Removal Tool – May 2009 (KB890830) – Internet Explorer Version
- Update for Windows Mail Junk E-mail Filter [May 2009] (KB905866)
Although some of this is usual like the Malicious software removal tool, and Windows Junke e-mail filter, we won’t know what else will be released until Tuesday. Some of the updates will be minor like the Powershell, I am guessing tis will help get ready for SP2, and the SP1 for the .NET framwork also looks to be getting ready for SP2. So I will keep you updated if i find out what else is released on Tuesday!



























