Malware sites for July 30, 2009

By Paul | Jul 30, 2009

I just got some news about a few sites:

personalantivirus3

These sites are either claiming you have a virus and are considered either URL Redirects or URL Hijackers.   If these sites keep appearing on your web browsing maybe it is time to do a complete system scan and get that spyware off your system.   Some of these Rogue Antiviruses  may even have a security adviser claiming random sites are infected with viruses or Trojans and claiming they are unsafe.  These sites are either wanting you to isntall the software or trying to sell you the fake product, which will do nothing but harm your system.

Threat to System : Moderate

Rating: ★★★★☆

Advice : Do a Complete system scan and make sure you don’t have any more hidden malware.

I recommend :

Download SAS

Download SUPERAntiSpyware

AVG Technologies - Tough on threats.
Download Malwarebytes

Download Malwarebytes

SUPERAntiSpyware now has an ONLINE Scanner that you can use to help get rid of some of the malware that keeps you from running your anti virus. You should give it a try....

New spam Campaign — Casino Anyone?

By Paul | Mar 24, 2009

Looks like there is a new Campaign going on with regards to having VIP access.

geocitiesspam

So I go to the site:

geocitiesspam1

I decide to have a little fun and download the file.  The Filename is “Smartdownload.exe“.  Now you shouldn’t install any software or programs from sites you don’t know about or have any idea of what changes are going to be made.  I use CWSandbox to better understand this file.  Here are a few thinks I’ve found:

  • This program connects to three different IP’s [Your broadband Modem,200.122.168.237, and 212.201.100.136]
  • It also Changes your Autoexec.bat file.  (Not good)
  • Changes access flags on several different program (not good either)
  • It also tries to be Anonymous.  If you checks the logs out your self you will find it very interesting.
  • It looks like it connects to the servers every time you boot up!! (Not good either)

Facebook Virus strikes again

By Paul | Dec 4, 2008


“Look you were filmed all naked!” read the subject header on one iteration of the virus-spreading message, which is being sent automatically from infected accounts to the “friend” list for that account. Clicking the link usually takes users to a page that looks like YouTube, and a pop-up message advises the user to download a Flash plug-in. The download contains the virus, which replicates by contacting everyone on the victim’s Facebook friend list and advancing the hoax.

[Via Boston Media]

This is a good social engineered attack, they seem to have you download a virus into your system.  I Keep talking about how you need to be careful with emails.  I also suggest that you do a complete Virus scan if you think you’ve been hit with this.  There is only one way to prevent yourself from getting this little facebook virus and that is not to click it. Some other things to consider if you found out this was a virus is to contact the person who sent this to them so they to could do a virus scan on their system.

AVG Detected a False Positive

By Paul | Nov 11, 2008


According to Security and The Net:

An update for the AVG virus scanner released yesterday contained an incorrect virus signature, which led it to think user32.dll contained the Trojan Horses PSW.Banker4.APSA or Generic9TBN. AVG then recommended deleting this file; this causes the affected systems to either stop booting or go into a continuous reboot cycle. So far, the problem only appears to affect Windows XP, but there is no guarantee that other versions of Windows don’t have the same issue.

[Via Security and The Net]


I bring this up because this is a false positive according to AVG. AVG since sent out another update to there Database and you can go and update the database to get rid of this problem. If you need to restore that DLL check out the article Security and The Net, they got some excellent suggestions on fixing the problem.

If you’ve not been affected by this yet, you probably won’t be. It is yet unknown how many people have been affected. I’m blogging about this to tell people about this and to warn people that not all of warnings from AVG are true and that is why you should always ask before you delete or do anything to your system. I always USE google when it comes to these types of questions

Sites that you need not Visit:

By Paul | Nov 2, 2008

I’ve had some Anti-virus problems in the past few weeks and have been trying to see if it is my system or if it was just luck of the draw.  So I did some research and found some sites that you should not go to, or download from.   These sites have been know to spread the fake anti-virus malware software.   So I wanted to warn people of some common websites that have been known to have viruses on them:



  • hxxp://movieportal2008q.com/freemovie/Movie/xxxx/x/ — this site usually tries to send you the “Trojan.HTML.Zlob.AG” Virus.
  • hxxp://porntubedot.com/xxxxxxxx/WatchFreeMovie.php –This site usually tries to send you the “Trojan.Dropper.SMN” Virus.
  • hxxp://handballfondi.it/xxxxxx1.php — This site is one of the new Malware sites that looks like Youtube,   When you go to this site they say you need a special to play a video clip.  Most of the time when you get something like this, it is going to try to install Malware. A good broad set of Codecs that you may want to download is called Klite Mega Codec, which if you us that you should never need to download any other codec to play a movie clip from any site online.

Some Important programs to prevent yourself from having viruses and Malware!!

By Paul | Jun 14, 2008

This post is in response to Alertscan.net and how many people have seen my page. If you would like to protect yourself from the possible hi-jacking of your internet or Computer there are some programs to consider using:

If you would like to scan your system right now without downloading any files go to:
Kaspersky Lab Free Virus Scan

Firewalls:

Now these are free but I tell you. You will only need one firewall even though windows has a firewall this helps as a better protection to know what is coming in and going out.

Anti-Virus:

Again these files are free but you will only need one of these. If you install more than one you will most like start slowing your system down to much!!

Spyware Removal:

Bad Behavior has blocked 928 access attempts in the last 7 days.

© 2009-2010 Tech-Linkblog.com All Rights Reserved -- Copyright notice by Blog Copyright

Tech-Linkblog.com is Digg proof thanks to caching by WP Super Cache

© 2007 Tech-Linkblog.com and Hosted by Justhost and domain through Godaddy, - WordPress Themes by DBT -- Who links to my website?