List of Malware Sites for Aug 14, 2009
Comments Off
- secure-spyware-scannerv3.com (Personal Antivirus Scareware Site)
- secure-antispyware-scanv3.com (Personal Antivirus Scareware Site)
- best-virus-scanner.com (Personal Antivirus Scareware Site)
- homeantispywarescan.com (Personal Antivirus Scareware Site)
- livetimeprotectionscan.com (Personal Antivirus Scareware Site)
- beeves.info (Internet Antivirus Pro Scareware)
- securitytoolworks.com (New Rogue Total Security Antivirus)
These sites gets installed in unsuspecting computers by way of exploits, backdoors, Trojans, or unsafe downloading practices. This usually means that if you have it you should remove it by any means necessary because this software has been know to cause more and more trouble as time goes by. This software is fake ware, it tries to tell you have a virus and that they can get rid of it. In fact, this software is not designed with Antivirus engine in it but to illicit pop ups and warning to raise the users security concerns about the computer in question. Downloading programs from bit torrents or other unsafe ways can and most likely will have these types of programs installed alongside the program you wanted.
Threat to System : Moderate
Rating: 




Advice : Do a Complete system scan and make sure you don’t have any more hidden malware.
Fix Shutdown Problems in Vista!
Comments Off
In the Patch Tuesday update, Microsoft quietly released the patch to fix Windows Vista machine shut problems. This patch should of came sooner.
Update for Windows Server 2008 and Windows Vista
Install this update to resolve a set of known application compatibility issues with Windows Server 2008. After you install this item, you may have to restart your computer.
This was not a critical update and it seems to resolve so many issues with compatibility. One thing it seemed to fix on my system has been the shutdown time. It is now quite fast, it would normally take me 2 to 3 mins to shutdown, now it does it in less than a Minute. So if you’ve not installed this update please install it soon. I would like to know if people are seeing the same thing I am. I’ve found a great resource on fixing it if you are still having problem, it talks about how to check your system performance. Although this is been doing it lately with these programs not loaded or even running, they still seem to cause problems so now I get the feeling it has to do with legacy programs. This should fix most of the problem with older programs.
Upcoming Patch Tuesday
Update for Windows Server 2008, Windows Vista, Windows Server 2003, and Windows XP
Install this update to resolve an issue that is caused by revised daylight saving time laws in many countries. This update enables your computer to automatically adjust the computer clock on the correct date in 2008. After you install this item, you may have to restart your computer. This update is provided to you and licensed under the Windows Server 2008 License Terms.
Update for Windows Server 2008 and Windows Vista
Install this update to resolve a set of known application compatibility issues with Windows Server 2008. After you install this item, you may have to restart your computer.
trojan.zlob removal tricks!!
Comments OffAliases:
Trojan-Downloader.Win32.Zlob.qyl (Kaspersky)
Trojan-Downloader.Win32.Zlob.qzs (Kaspersky)
Trojan-Downloader.Win32.Zlob.qzn (Kaspersky)
Trojan.Zlob.CPP (BitDefender)
Puper (McAfee)
SystemDefender (Symantec)Trojan:Win32/Zlob.G is a component of Win32/Zlob that downloads rogue security programs, adware, and additional Win32/Zlob components.
[Via Windows Live OneCare]
Trojan.PWS.ChromeInject.A is not a Firefox plugin.
Comments Off
A new type of malware designed to harvest web passwords has been detected in-the-wild by BitDefender’s antivirus research labs. This latest e-threat – called Trojan.PWS.ChromeInject.A – is intended to be delivered onto a compromised computer system by other malware for subsequent download into Mozilla Firefox’s Plugin folder. Once installed it gets to work every time Firefox is started.[Via Bitdefender]
The key to this virus protection is just be cautious of where you go and keep all you system update to date to prevent all this from happening. It is also advisable to not have your passwords saved on Firefox, you should use something like Roboform, it is free to download and try. It will encrypt your passwords so if they don’t know the master password then they are out of luck. Roboform is also good for coming up with some strong passwords. Just some suggestions to prevent from people seeing your sensitive data, you don’t want anyone to get that data.
Vista Sp2 Beta Still not up yet!
Comments Off
You asked for it, Now it’s real — Vista SP2 Dec 4,2008
Comments Off
Beginning Thursday Dec. 4th, we will be making the Windows Vista and Windows Server 2008 Service Pack 2 Beta available to everyone through a Customer Preview Program (CPP). The CPP will launch on TechNet and be available to anyone interested in trying out this service pack. The CPP is intended for technology enthusiasts, developers, and IT Pros who would like to test Service Pack 2 in their environments and with their applications prior to final release. For most customers, our best advice would be to wait until the final release prior to installing this service pack.[Via Technet]
- It is a Beta
- It will Have Bugs
- It is for people who want to test it out
- It should only be installed for people who need to test it out
Spying on Spyware.ISpynow!!
Comments OffSpyware.ISpyNow monitors files, network traffic, and keystrokes. This Spyware gives the person who installed it a Web-based interface with summaries of logged information on the host computer.
[Via Symantec]
- Avg detected Trojan Horse Generic 12.htc? – This has a great article on how to use HiJackthis program and how to make sure you no longer have the virus.
- Some Important programs to prevent yourself from having viruses and Malware!! — This article gives you some other programs to use other than Symantec. You have a wide variety of choices on Anti-virus programs and Firewall Choices. You also have some choices on Spyware removal programs.
Not so, Antivirus2008
Comments OffOK, so let’s say the user (by some stroke of luckless chance, or courtesy of a trojan downloader) ends up with the demo installer of Rogue:W32/VirusRemover2008.C on their hands and it runs
[via F-Secure]
According to them, they have many different version of this rogue antispyware. They have de, dk, es, fr, it, no, nl, and no, which are all attempting for you to buy this no so Virusremover2008 software. They talk about how it tells you have a 9 infected viruses and that you need to remove them, but in truth, they use a text file to create this lie. Check out all the details for further information.
Microsoft issues Vista patches out of Monthly Patch Cycle!

Microsoft issues Out of cycle patch for Vista. These patches are as Followed:
An update rollup is available for the Microsoft Windows Imaging Component (WIC) in Windows Vista or in Windows Server 2008. This update rollup resolves the problems that are documented in the following articles in the Microsoft Knowledge Base:
954708 An update to add support for the serialization of complex Extensible Metadata Platform (XMP) data types in the Windows Imaging Component945060 There may be inconsistencies in the Extensible Metadata Platform (XMP) and Exchangeable Image File (EXIF) values for an image file in Windows Vista and in Windows XP
The Windows Portable Device (WPD) API collects and transfers Software Quality Metrics (SQM) data to Microsoft servers. The SQM data is collected only on an opt-in basis through the Microsoft Customer Experience Improvement Program. An update is available that disables the collection and transfer of SQL data to Microsoft servers.
This update affects Windows Vista-based computers, Windows Vista Service Pack 1 (SP1)-based computers, and Windows Server 2008-based computers that are in the Microsoft Windows Media Player Customer Experience Improvement Program.
Cricket USB UM100 Broadband Wireless Modem Review.
The UM100c is No Longer Available, Please check out the Cricket A600 Modem Review Or the UM185 Broadband modem. The UM185 modem might be a replacement to the UM100.
After a full week of playing around with this USB wireless, I wanted to talk about it. So let’s break it down into pieces.
- (USB Broadband A600 Modem card for Free after Instant online rebates and Mail in rebate Free shipping & first month free! Shop today.)
- Installation – The installation of the USB was not to difficult. I did have to do some more steps than this: Install the Software, then hooked up the USB device to the USB port.
- Manual Activated the Broadband – For some reason in my area they had several people have problems with the broadband activation. So I had to activate it manually!!
After that all went well, I was on the internet just a cruising along. I did however wonder why I was getting such a slow response speed. When I went traveling I thought I would share some of my local results with you to better show you my speed. All these test were done at
How to disable autorun the easy way!!!
Comments OffI read a report from Cnet about USB devices spreading Virus and I will quote:
The bad guys are intentionally developing new flavors of malware designed to propagate through USB devices,” said Gunter Ollmann, chief security strategist for IBM’s ISS security division. “They are today’s floppy drives.”
An infected computer can spread a virus to a clean USB thumb drive that is inserted. That USB drive will then be spreading the virus onto other computers if the operating system on those machines has an AutoRun-type feature enabled. The AutoRun function in Windows launches installers and other programs automatically when a flash drive or CD is inserted. The Mac has an equivalent function, according to Ollmann.[Via Cnet]
In order to disable “autorun“, which in Vista is called Autoplay. In order to disable Autoplay from starting when you insert media into your computer here is how you do it:
You will need to be Logged in as Administrator before this can be done:
Next click start and type “Autoplay” without quotes. It will bring up a screen but all you have to worry about is this:
A good free VPN Client — OpenVPN & more
Comments OffI’ve been doing some research on what might be good to use in case, I was away from my home network. I was thinking how safe am I at Starbucks or other places that I might doing my web. So I did a little looking around to see which one I liked and I came to the conclusions that only one I need right now is:

The nice thing about this was the simple installation of the software and how easy it was to set it up. This service is in beta but seems to be really well done with regards to the end users. When you install this software and want to connect it uses the OpenVPN software with there configurations. OpenVPN, is a open sourced SSL VPN solution and is free to use. The way this this free is of Ad Supported banners. Now it is cheaper than paying monthly for a VPN service. The ones I’ve found so far are these few:
- OpenVPN (FREE)(*advertisement)(Linux, and Windows)
- Always VPN (Prepay) (5 GB to 80 GB limit) (Linux, Mac and Windows)*Out of Beta
- Hotspot Shield (FREE) (*advertisement) (Windows) (3 gig Cap)
Antivirus Professional 2008 uses Scare tactics
Comments OffWe came across a rogue today called Antivirus Professional 2008 that uses GeoIP Lookup as part of its scare tactics. This site uses Flash and script to create the effect of an online scan, that then attempts to push an installer at the visitor. The NoScript extension for Mozilla Firefox is an excellent way to mitigate against this kind of garbage.
[Via F-secure]
It seems that there is a site out there, that seems to be trying to scare you into downloading there software. If you have any questions about this site please feel free to check out what I’ve found out:
Registration Service Provided By: ESTDOMAINS INC
Contact: 1.3027224217
Website: http://www.estdomains.com
Domain Name: ANTIVIRUS-ONLINE-SCANNER.COM
Registrant:
N/A
Serento faloimitator@list.ruMinskay str. 27-14
Kiev
Kiev 237293
UA
Tel. 044.2901732
Creation Date: 07-Jun-2008
Expiration Date: 07-Jun-2009
Domain servers in listed order:
ns2.antivirus-online-scanner.com
ns1.antivirus-online-scanner.com
Administrative Contact:
N/A
Serento faloimitator@list.ruMinskay str. 27-14
Kiev
Kiev 237293
UA
Tel. 044.2901732
Technical Contact:
N/A
Serento faloimitator@list.ruMinskay str. 27-14
Kiev
Kiev 237293
UA
Tel. 044.2901732
Billing Contact:
N/A
Serento faloimitator@list.ruMinskay str. 27-14
Kiev
Kiev 237293
UA
Tel. 044.2901732
Avg detected Trojan Horse Generic 12.htc?
Just got a warning from AVG about, trojan horse generic 12.HTC, haven’t heard of it, anyone out there hear if this one? apparently it infects explore.exe, and after months of explore.exe crashing I’d say it’s a legit virus.
[Via Answer Bag]
Some tricks and tips to remove this little virus is quite simple. It is embedded in your system so how do you remove this threat? Easy follow these steps and you will have a better chance of getting rid of the virus:
- Find out all you can on the virus – Finding out the extent of where the virus lays is really a good idea. Just because you found one place doesn’t mean it isn’t also hiding some other place. Some good ways to figure out where it might be is to download Hijackthis and Then onces you download it and install. Run it, and when you get the LOG file you will want to go to HijackThis Log Analysis Site 1 and HijackThis Log Analysis Site 2, and see what it says.
Fake Wordpress update 2.6.4 steals data!
The hacked version of the file pluggable appears to be stealing the content of cookies on larger installations of WordPress. Sophos are now detecting this file as Troj/WPHack-A.
[Via Sopho's]
Apparently this little update is a rogue update. According to Sopho’s and Craig Murphy’s blog, it is said to steal your data and send it to another site. This hacked version of Wordpress is coming from wordpresz.org so if you happen to stumble onto this fake update, just delete it and go on with your blogging. Craig talked about how when he logged it this fake update popped up. So sometimes it is safer to do some digging before you apply an update especially to your Operating system. Thanks to Sopho’s for telling people about this fake and dangerous problem.
Sites that you need not Visit:
Comments Off- hxxp://movieportal2008q.com/freemovie/Movie/xxxx/x/ — this site usually tries to send you the “Trojan.HTML.Zlob.AG” Virus.
- hxxp://porntubedot.com/xxxxxxxx/WatchFreeMovie.php –This site usually tries to send you the “Trojan.Dropper.SMN” Virus.
- hxxp://handballfondi.it/xxxxxx1.php — This site is one of the new Malware sites that looks like Youtube, When you go to this site they say you need a special to play a video clip. Most of the time when you get something like this, it is going to try to install Malware. A good broad set of Codecs that you may want to download is called Klite Mega Codec, which if you us that you should never need to download any other codec to play a movie clip from any site online.
Windows update is getting a revision!
Comments Off“Over the next couple of months, we’ll be rolling out another infrastructure update to the Windows Update agent (client code),” said an unidentified Microsoft employee on the Windows Update team’s official blog. “This update makes it possible for users to install more than 80 updates at the same time.”
[via Computer World]
Now if your like me and have several computers who need to be updated at a given schedule, you sometimes worry about these updates that come along that might just break your system. I have been using a program call Offline Updater, which does what Autopatcher does really nicely. So why is Microsoft sending out this patch? Two reasons, one they want you to be able to update your operating System without hurting your system integrity.
Now lets talk about the integrity of having to reboot your system. You see, every time you reboot the system, it causes the system hardware some strain. It is something like having starting up a car, sooner or later you will have the starter go out, because of to much start up.
Time to Change your clocks.
Time to change those clocks of ours
Beginning in 2007, Daylight Saving Time is extended one month and the schedule for the states of the United States that adopt daylight saving time will be:
2 a.m. on the Second Sunday in March
to
2 a.m. on the First Sunday of November.
So that saying goes it “Fall back, Spring Forward“ So now here are some great programs to better help you get your computer clock up to snuff:
Worldtimeclock Atomic Clock Sync Program – It is a free program for you to use with your Windows. Although you have to make sure your selected the right timezone once it is installed all you will need in an internet connection to sync your windows time with the atomic clock.
Backup your Mozzila Thunderbird profiles
Comments OffSo you have all this mail you want to back up in case something terrible happens to your hard drive. So here is ways to backup your email and other programs in Vista. I think Vista has a new way of keeping program profiles in an hierarchical setup. So what is the HIDDEN directory it is:
C:\Users\[USER]\AppData\Roaming\Thunderbird\Profiles
Now as you can see your Thunderbird profile is in a hidden directory in the AppData Directory. You can easily get to the hidden directory by typing %appdata% {enter} in the search bar of Vista. Now How do you backup and restore. The program I use to backup is GoodSync. I send the data to the cloud and when I need it I can restore it back to the directory. Now what about restoring, if you have to do a complete re-install of Thunderbird you can always copy over the back up to the Thunderbird Profiles directory and install Mozilla Thunder bird and it should see it. If by chance you load up Thunderbird and you have to re add everything you would have to delete everything in that directory and then restore from the back up.
Taking back Program Controls : For the Beginners!
So, let’s face it, this is one of the most annoying problems there are with programs. Programs that you think are shut down but are actually still active in the Taskmanager. So I figured I’d talk about some of the most common fixes for these problems. Now as you know there can be any number of programs or glitches as they say, causing the problems. So let’s talk about the why, shall we.
Most of the time programs don’t quit because they are waiting for some kind of response from the system or the System is waiting for the program to close by itself. It could also be a problem with a Virus or Root kit? How do you fix it?
Fixing the problem is somewhat just trial and Error. It isn’t always the hardest thing to do but sometimes people overlook the easiest solutions. So here are some easy ones:
- Check to see if one of the Microsoft updates are causing the problem – Sometimes you might not realize it, but having installed an update can cause problems like KB951748. That one caused a major Headache for Zonealarm. So it is wise to check each months updates when you start seeing problems, sometimes it could of been happening for a while but it can sometimes cause troubles.
Is Spore Worth 49.99?
Comments OffSo I been doing a little digging and trying to find out what the heck people are complaining about and I found some great reviews telling me exactly why people hate EA. They don’t necessarily hate Spore or Will Wright, but the Security around The Spore game.
So In a couple of these comments. These reviews talk about Creating the creatures and All. I’ll submit some of the reviews that I thought was relevant and let you decide for yourself. I would however wonder the one big question? Is Spore Worth the Money? Here’s the details that I know of right now:

- You can only install it 3 times before you have to call EA to get an override code. (Although I heard rumors that if you unistall it, you will get a credit for an Install)
- You can not Install new hardware or upgrade your hardware because if you do, it’ll count as an install, According to this one person.
- The game only allows 1 login per Install. So you can’t have more than one character and one universe according to this person.
Getting Spaz to work with the Twit Army:
Comments OffI having successfully installed Spaz and use it with the Twit Army. I’d figure I would talk about how to get Spaz to work like Twirl. It’s a very simple way but some people seem to having trouble. This will only work with Vista or XP and I am not sure about Linux or Mac. I’ve been successful doing this with a Vista Premium Machine. It seems to be really easy to use and not take up to much of your desk space.
- Download and Install Adobe Air — (You will need this to installed first.)
- Download and Install Spaz — (This is the main program)
- Once install you will need to go to:
- Go to the [ Preferences ]
- Go to [ Other Services ]
-
Put this in exactly as shown (see example)

- Go to [ Networking ] (optional)
- Put this in exactly as sown (see example)
>

Limiting Use of Your Bandwidth!!
Comments OffWith the Recent Comcast deciding to declare how much of bandwidth you can use. I decided to talk about how to limit your bandwidth. So Here are some tips and tricks to get the most out of your bandwidth:
Chapter 1 – Understanding your Wireless Router : This is a must. This chapter talks about how to access your router and and how what is an IP!!
Chapter 2 — 10 Ways to keep your wireless router Secure – This one will help with those pesky neighbors who are leeching of your internet and Bandwidth!
Chapter 3
- Turn off Auto Update to Unimportant programs : Having several programs checking for updates can start to add up. Although this is a small amount of bandwidth. It will give your that extra amount.
- When not using your Internet turn off your Modem : This one is the most useful because when your not using your internet just turning off the modem will prevent you from using to much bandwidth.
Instantly free your iPhone
Comments Off
If you’re looking to update your 1.1.1 iPhone to install 3rd party apps all you need to do is visit jailbreakme.com – once there you’ll get the installer.app and can start loading applications right away (check out more detailed instructions @ TUAW).
Yes that’s right now you can add your third party apps back on the IPHONE or IPOD!!
USB Ubuntu 7.10 Gutsy Gibbon install
Comments Off
USB Ubuntu 7.10 install from Linux: This tutorial enables you to install, boot and run Ubuntu 7.10 (Gutsy Gibbon) from USB. In addition to installing Ubuntu to a USB device and then booting Ubuntu from USB, this tutorial will enable you to automatically save your changes and settings back to the stick and further restore them on each boot using a second “casper-rw” persistent partition. The tutorial was written for those already familiar with working from Ubuntu or another Linux desktop environment. If you do not have access to or prefer not to use a Windows computer, this Ubuntu Linux on a stick tutorial is for you.
Ubuntu 7.10 takes slightly longer to boot than previous releases. However, once it’s up and running, it performs much better than running from the Live CD.
USB Ubuntu 7.10 Essentials:
- Ubuntu7.10 ISO
- CD Burner
- 1GB USB flash drive (2GB+ recommended)
- U710fix.tar
It’s a very good article and how to!!













