Careless Facebook profiling can lead to Identity Theft!
Comments OffI just got in contact with a old friend from High school and another friend of mine suggest the new friend. I was looking at her profile and couldn’t believe what I saw:
As you can see this is not good I was amazed at how many people are giving out there birthdays and who they are married to to friends and family. So we heard about how people are claiming they need help or are in need of desperate money. This is nothing new, as you know people are having hard economy times and people are using the social engineering to scam people out of money.
I feel that I should warn people the important necessity. You shouldn’t be broadcasting your DOB and who your married to to your friends, just in case they get hacked.
Recent activity indicates that identity thieves are hacking into trustworthy profiles before selling on the login details to interested parties. This information is used by spammers to target legitimate users, posting misleading links on their “walls” – personalized message boards.
[Via Computing.Co.UK]
Tools for Virus Removal : The ones I like to use!
Comments OffIn this post I want to talk about virus removal tools that I like to use when I need to remove a virus. Some thing to consider when using these tools are:
Each of these have to be dealt with differently because each requires something different. Like rootkits if you have one installed and know that it is a rootkit you only options are to download some rootkit removers like:
- Sopho’s Anti-rootkit remover – This is good for those more known viruses and can remove several types of rootkits. This isn’t the only one I use, but it is a part of group that does the rootkit removing for me.
- Microsoft Rootkit Revealer – This is good for proving there is a rootkit. I’ve not seen it not detect a rootkit. Most of the time when I find a rootkit from the other rootkit revealers this one actually dos better with information.
- Panda Anti-Rootkit Remover — This one is another one I use when the other ones can’t remove it. Each one does remove certain rootkit differently and works better than the other.
Inside understanding of win32.netsky.q
Comments OffNetsky.Q is a worm that spreads through e-mail. It is distributed as a 28,008 byte Win32 executable, compressed with PEtite, which drops a 23,040 byte DLL file. It also distributes itself inside ZIP archives.
I saw this on on the net and through we should talk about and let people know how you could get that the worm off your computer. It seems to be a self-replicating worm, it will continue to send out fake messages to people with the subject lines Like:
- Delivery Error
- Delivery Failure
- Delivery
- Mail Delivery failure
- Mail Delivery System
- Mail System
- Delivery
- Delivered Message
- Error
- Status
- Failure
- Failed
- Unknown Exception
- Delivery Failed
- Deliver Mail
- Server Error
- Delivery Bot
And with each message there is the reciepts email address at the end. This worm seems to be spreading like wildfire today. It is because people have not install
Internet Explorer still has a Vulnerability after Tuesday Patch!!
Comments OffI just read this on several blogs and thought I’d share the details with you, it seems that Microsoft didn’t know there was a problem with this Bug/Vulnerability. Computer world has a great article and says this:
“The updates Microsoft released yesterday do not address this possible vulnerability,” a Microsoft spokesman said today in an e-mail reply to questions, “but I can tell you that Microsoft is investigating these new public claims of a possible vulnerability in Internet Explorer.”
[Via ComputerWorld]
I can only hope that Microsoft fixes this Vulnerability soon, I would take a guess that they will try to get this out on the patch cycle if not they will push it out after. Some things to remember with IE(Internet Explorer) is only use it with Microsoft Updates. I also Suggest downloading FireFox and checking out my Anti-virus and Anti-Spyrware Page for ways to prevent from getting a virus.
trojan.zlob removal tricks!!
Comments OffAliases:
Trojan-Downloader.Win32.Zlob.qyl (Kaspersky)
Trojan-Downloader.Win32.Zlob.qzs (Kaspersky)
Trojan-Downloader.Win32.Zlob.qzn (Kaspersky)
Trojan.Zlob.CPP (BitDefender)
Puper (McAfee)
SystemDefender (Symantec)Trojan:Win32/Zlob.G is a component of Win32/Zlob that downloads rogue security programs, adware, and additional Win32/Zlob components.
[Via Windows Live OneCare]
Trojan.PWS.ChromeInject.A is not a Firefox plugin.
Comments Off
A new type of malware designed to harvest web passwords has been detected in-the-wild by BitDefender’s antivirus research labs. This latest e-threat – called Trojan.PWS.ChromeInject.A – is intended to be delivered onto a compromised computer system by other malware for subsequent download into Mozilla Firefox’s Plugin folder. Once installed it gets to work every time Firefox is started.[Via Bitdefender]
The key to this virus protection is just be cautious of where you go and keep all you system update to date to prevent all this from happening. It is also advisable to not have your passwords saved on Firefox, you should use something like Roboform, it is free to download and try. It will encrypt your passwords so if they don’t know the master password then they are out of luck. Roboform is also good for coming up with some strong passwords. Just some suggestions to prevent from people seeing your sensitive data, you don’t want anyone to get that data.
Are you patched, Secunia Says NO
Comments Off
Think you’ve got nothing to worry about, according to Secunia 98% of computers are not fully patched and are vulnerable to some kinda of attack.
If you have a system that is off of the Net you could use the Clone of Autopatcher Program to do it for you. You also need to update all your secondary programs such as Audacity, Open Office, and other programs that you use weekly.
sinowal.trojan Problems.
Comments Off
Trojan-PSW:W32/Sinowal.CP drops and loads a password stealing component on the infected system and tries to steal account information from it. It also tries to steal information that is required to access certain online banks’ and online payment systems’ websites.[via F-secure]
This are the beginning steps to get rid of a Virus but it will be a really hard virus because it wants to stay in your system. You should also Restart in Safe mode and Try to remove that virus that one. You will also want to disable your system restore due to the fact that it will be in there and might come back if you restore your system. Just some simple tips to help keep you safe on the net.
Windows 7 will sport Direct X 10 Compliance!
The new feature is called WARP10, for “Windows Advanced Rasterization Platform,” and it’s essentially a DX10-compliant, software-only rasterizer that was written by Microsoft; it runs directly on the CPU. In a situation where a DX10 app needs to run but can’t find DX10-compliant hardware, it will run on WARP10, albeit very, very slowly. Ultimately, you can think of WARP10 as a “software DX10 GPU” that will exist as a fallback in Windows.[via Arstechnica]
Stop botnets in its tracks With a Firewall!
According to PC World and I’ll quote:
According to FireEye chief scientist Stuart Staniford, detection rates are so poor that, on average, only around 40 percent of security software can detect binaries during the period of greatest infectivity and danger, namely the first few days after a particular variant starts being used by botnet builders.
[via PC World]
In a recent virus storm, We have people finding my site because of a Good Firewall. No if he didn’t have anything but Windows firewall then it would of gotten through and you would not of known about it. So let’s talk about how to prevent botnet attacks. This is relatively easy and if you follow some common rules. You to could be less likely to be infected. I will say this most people don’t do these common tips and they should do them.
Not so, Antivirus2008
Comments OffOK, so let’s say the user (by some stroke of luckless chance, or courtesy of a trojan downloader) ends up with the demo installer of Rogue:W32/VirusRemover2008.C on their hands and it runs
[via F-Secure]
According to them, they have many different version of this rogue antispyware. They have de, dk, es, fr, it, no, nl, and no, which are all attempting for you to buy this no so Virusremover2008 software. They talk about how it tells you have a 9 infected viruses and that you need to remove them, but in truth, they use a text file to create this lie. Check out all the details for further information.
Microsoft kills a fake antivirus tool from 994,061 computers!
Comments Off
According to Arstechnica and I’ll quote:Win32/FakeSecSen has gone by various names, including Micro Antivirus 2009, MS Antivirus, Spyware Preventer, Vista Antivirus 2008, Advanced Antivirus, System Antivirus 2008, Ultimate Antivirus 2008, Windows Antivirus, XPert Antivirus, Power Antivirus, and Ultra Antivirus 2009. Furthermore, it is skinnable, so each of these variants has a different GUI, although the basic functionality is the same: bother users with warnings of malware until they pay up.The Microsoft Malware Protection Center recently released some data on how the removal tool performed this month: FakeSecSen was removed from 994,061 machines. That number isn’t the highest Microsoft has recorded before, and the number of removals depends on which malware Microsoft adds each month and how widespread it is.
[via Arstechnica]
This seemed to of happened this month with the usual Windows update. If you haven’t updated your system just yet you should. This troublesome fake virus seems to have been killed from several systems. This could effectively make it harder for these guys who ever designed this program to make money. I hope microsoft does even more virus removals in next month. If you still want to try to get rid of these viruses don’t forget to check out my tips on Virus removal.
Google SearchWiki dies after two days!!
Comments OffAccording to Techcrunch Google Pulls the Google SearchWiki. Unsure as to way but here’s what they said:
Users are reporting that the recent changes to Google’s search engine, called SearchWiki, have simply disappeared from the site. It’s certainly gone from my account.
[via TechCrunch]
I’ve got my theory on this, and it’s quite a good theory. I think it was a making search results come up wrong or not at all. The last two days they’ve had that going my page views have drop BIG time. According to my Stats I’ve had 236 Unique Visits for Thursday, and 232 Wednesday. My Friday stats show that I only got 185 Unique Visits, dropping 40 to 50 people. My stats for today which is incomplete shows that I’ve only gotten 136 unique visits. Although that is complete you can see where I dropped drastically. I think Google was getting yelled at by websites due to the stats dropping. I am guessing people could tell if they wanted to go to a site just by reading the comments. This will hurt every site, including TechCrunch. I will say this is only a theory and this might or might not be the case.
Google Creates the ultimate Search Wiki!!
Comments OffGoogle has started to do let people rate the searches and help find the better articles. Google is calling it Searchwiki. Here is a screen shot:
Some other Websites talking about this are:
These are just a few but I wanted to let you see what other websites are talking about this new feature. I do want to hear what you think about all this and what is likely to come later on?
Vista has a new Vulnebility!
Comments OffAccording to Techworld.com, Vista has a new Vulnerability that could let a hacker infect a Vista machine with a rootkit. The talk from them is quite intriguing. I will quote it to better let you know what the Vulnerability is:
The vulnerability could allow a hacker to install a rootkit, a small piece of malicious software that is very difficult to detect and remove from a computer, Unterleitner said.
Phion notified Microsoft about the problem on 22 October. Microsoft indicated to Phion that it would issue a patch with Vista’s next service pack. Microsoft released a beta version of Vista’s second service pack to testers last month. Vista’s Service Pack 2 is due for release by June 2009.
[via Techworld.com]
The way they could do this is through the Device IO Control which in turn could corrupt the Kernel of Windows Vista. Now we all know that Microsoft will release a patch quicker than 6 months away. According to this article, people are already looking for the exploit and want to know more about it. I would be willing to bet they will have a patch out sooner than later. Probably January or Febuary, which will be a big deal because no one will expect it. I would also imagine hackers will start trying to figure out how they could install software as quick as possible before Microsoft pushes out the patch. So what can you do to protect yourself, Get a firewall, a Antivirus and learn how to protect yourself to prevent yourself from getting a computer virus.
Did the Xbox Experience break netflix on Demand activation?
Comments OffAlthough this is just a few that talks about the experience and Netflix problems there are going to be more tonight when people start to come home from work wanting this service. I would bet over 100$ it will probably go down because to many request to sign up!! I hope they have the IT guys ready for this tonight or it will be a long night!!
Antivirus Professional 2008 uses Scare tactics
Comments OffWe came across a rogue today called Antivirus Professional 2008 that uses GeoIP Lookup as part of its scare tactics. This site uses Flash and script to create the effect of an online scan, that then attempts to push an installer at the visitor. The NoScript extension for Mozilla Firefox is an excellent way to mitigate against this kind of garbage.
[Via F-secure]
It seems that there is a site out there, that seems to be trying to scare you into downloading there software. If you have any questions about this site please feel free to check out what I’ve found out:
Registration Service Provided By: ESTDOMAINS INC
Contact: 1.3027224217
Website: http://www.estdomains.com
Domain Name: ANTIVIRUS-ONLINE-SCANNER.COM
Registrant:
N/A
Serento faloimitator@list.ruMinskay str. 27-14
Kiev
Kiev 237293
UA
Tel. 044.2901732
Creation Date: 07-Jun-2008
Expiration Date: 07-Jun-2009
Domain servers in listed order:
ns2.antivirus-online-scanner.com
ns1.antivirus-online-scanner.com
Administrative Contact:
N/A
Serento faloimitator@list.ruMinskay str. 27-14
Kiev
Kiev 237293
UA
Tel. 044.2901732
Technical Contact:
N/A
Serento faloimitator@list.ruMinskay str. 27-14
Kiev
Kiev 237293
UA
Tel. 044.2901732
Billing Contact:
N/A
Serento faloimitator@list.ruMinskay str. 27-14
Kiev
Kiev 237293
UA
Tel. 044.2901732
Is Vista just Windows 7?
Comments OffNow I know Vista isn’t what people expected and that it had high expectations when they first released it. I think that is due to the fact Microsoft tried so hard to make Vista seem more than it actually was. Now According to Ina Fried from CNET her post was about Windows 7: A better Vista?. In her post she talked about the features of Windows 7, and how Windows 7 is almost like Vista. I tend to agree because of the look from screenshots I’ve seen to make me think it will be Version 2 of Vista. I don’t think it is anything that will change from Vista to Windows 7. It will however be more ready to boot up and shutdown that is according to what Microsoft said to Ina.
Time to Change your clocks.
Time to change those clocks of ours
Beginning in 2007, Daylight Saving Time is extended one month and the schedule for the states of the United States that adopt daylight saving time will be:
2 a.m. on the Second Sunday in March
to
2 a.m. on the First Sunday of November.
So that saying goes it “Fall back, Spring Forward“ So now here are some great programs to better help you get your computer clock up to snuff:
Worldtimeclock Atomic Clock Sync Program – It is a free program for you to use with your Windows. Although you have to make sure your selected the right timezone once it is installed all you will need in an internet connection to sync your windows time with the atomic clock.
IBM think Apple is Anti-Competitive!
Comments Off
IBM has filed lawsuits both against Apple in California (a state traditionally indifferent to non-competes) and against Papermaster, PA SEMI is the name of the aquired company, in New York.
[Via Endadget]
Noting Apple’s saying “PA Semi have been competitors since 2006″ meaning that they have the right to look for other sources of income. I have the feeling this will not end anytime soon. Some analysts are predicting that there will not make any difference either way. I am wondering why they did this in the first The
IBM is sueing because of an Non-compete clause. clause stems from Mark Papermaster quiting IBM and joinin apple. They claim that he can’t be a competitor to IBM for at least a year. Most companies in California don’t bother with that clause because they don’t care about the clause. Apple is saying this is bogus and notes that the lawsuit might not make it all the way to through th system. So now only time will tell.
Is Hulu the “salad course”?
Comments Off
As I’ve been watching Hulu the last few months. I’ve come to think that Hulu isn’t offering us the viewers the chance of a full course meals. They seem to like to stop after the first 2-3 seasons on most of the shows. I recently contacted Hulu about the Naruto episodes and here’s what they had to say about it:
Thanks for the email. On background, sometime in the coming weeks, Hulu
will get the remaining episodes of Naruto Season 1, and we'll also get
episodes from Season 2-3 in the future as well.
Please let me know if you have any questions. Thanks.
Brandon Boone
So why does Hulu do this? I have a theory and this is one that most people will agree on. My theory is that the distributors are trying to entice us into buying the rest of the seasons from someplace, like Amazon or Itunes. Now I am going to have to say this is really stupid way of business and will sooner or later create even more of a demand to download these shows illegally. In the past people have always looked for the cheap way to watch there favorite shows.
Google Ups the Anti!!
Comments Off
As part of our effort to protect the accounts of AdSense publishers, we have mailed a Personal Identification Number (PIN) to the payment address entered in your account. This PIN must be entered on the PIN Information page before any payments can be issued to you. In the meantime, your account remains active, and you may continue to show ads and accrue earnings.
Well that came unexpectedly, Google actually is trying to protect our accounts now from getting phished and or/taken over by some malicious person. This is called two factor verification**, Something you know and something you have. You can also get verify through your Cell Phone. Here is what they said in my Email:
Hot, sexy bot sweet-talks personal data out of chatters
Comments OffSecurity software company PC Tools warns that the bot can easily be used for malicious purposes. The company said that the program’s ability to mimic human behavior to dupe chatters is worrisome, and could readily be used to collect all manner of information. “As a tool that can be used by hackers to conduct identity fraud, CyberLover demonstrates an unprecedented level of social engineering,” said PC Tools senior malware analyst Sergei Shevchenko in a statement. “CyberLover has been designed as a bot [robot] that lures victims automatically, without human intervention. If it’s spawned in multiple instances on multiple servers, the number of potential victims could be very substantial.”
[Via Arstechnica]
This is really a security issue here. Never give out your personal information online. I just want to post this to remind people not everything online is safe.













